Open
Cached
·
just now
2
directives
Content-Security-Policy
No enforced CSP headers found.
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.akstat.io p11.techlab-cdn.com trial-eum-clientnsv4-s.akamaihd.net trial-eum-clienttons-s.akamaihd.net c.go-mpulse.net s.go-mpulse.net *.algolianet.com us5azow6i2-dsn.algolia.net xfoi9ebbhr-dsn.algolia.net secure.adnxs.com bat.bing.com bat.bing.net d.btttag.com pearson3283191z.btttag.com pearson.blueconic.net pearson.sb.blueconic.net api.company-target.com s.company-target.com tag-logger.demandbase.com tag.demandbase.com googleads.g.doubleclick.net ad.doubleclick.net td.doubleclick.net *.fls.doubleclick.net connect.facebook.net analytics.formassembly.com pearson.tfaforms.net ade.googlesyndication.com fonts.gstatic.com pagead2.googlesyndication.com fonts.googleapis.com region1.google-analytics.com static.hotjar.com utt.impactcdn.com cdn.jsdelivr.net app.launchdarkly.com px.ads.linkedin.com snap.licdn.com i.liadm.com cdn.cookielaw.org bam.nr-data.net js-agent.newrelic.com geolocation.onetrust.com privacyportal-de.onetrust.com *.pearson.com pearson.com cdn.pdst.fm a.quora.com q.quora.com tag.rmp.rakuten.com alb.reddit.com pixel-config.reddit.com www.redditstatic.com pi.pardot.com sc-static.sc-static.net tr.snapchat.com tr6.snapchat.com pixels.spotify.com analytics-ipv6.tiktokw.us analytics.tiktok.com insight.adsrvr.org js.adsrvr.org static.ads-twitter.com analytics.twitter.com t.t.co pearson.esaas.inmoment.eu pearson.mcxplatform.de *.visualwebsiteoptimizer.com img.youtube.com pearson--projects.sandbox.my.site.com; frame-ancestors 'none';
default-src
Keyword
—
'self'
default-src
Keyword
—
'unsafe-inline'
default-src
Keyword
—
'unsafe-eval'
default-src
Scheme
—
data:
default-src
Scheme
—
blob:
default-src
Host
—
default-src
Host
—
default-src
Host
—
frame-ancestors
Keyword
—
'none'