server | nginx |
date | Wed, 13 Nov 2024 20:44:54 GMT |
content-type | text/html; charset=UTF-8 |
content-length | 25716 |
last-modified | Wed, 13 Nov 2024 17:30:33 GMT |
accept-ranges | bytes |
cache-control | max-age=3, must-revalidate |
expires | Wed, 13 Nov 2024 20:44:57 GMT |
access-control-allow-methods | GET,POST |
access-control-allow-headers | Content-Type, Authorization |
content-security-policy | upgrade-insecure-requests; |
cross-origin-embedder-policy | unsafe-none; report-to='default' |
cross-origin-embedder-policy-report-only | unsafe-none; report-to='default' |
cross-origin-opener-policy | unsafe-none |
cross-origin-opener-policy-report-only | unsafe-none; report-to='default' |
cross-origin-resource-policy | cross-origin |
permissions-policy | accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=*, publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=*, usb=(), xr-spatial-tracking=(), gamepad=(), serial=() |
referrer-policy | strict-origin-when-cross-origin |
strict-transport-security | max-age=31536000; includeSubDomains; preload |
x-content-security-policy | default-src 'self'; img-src *; media-src * data:; |
x-content-type-options | nosniff |
x-frame-options | SAMEORIGIN |
x-permitted-cross-domain-policies | none |
vary | Accept-Encoding,Cookie |
content-encoding | gzip |
statuscode | 200 |
http_version | HTTP/2 |
(Nice to have)