date | Wed, 11 Sep 2024 14:27:38 GMT |
server | nginx |
content-type | text/html; charset=UTF-8 |
expires | Wed, 11 Sep 2024 15:27:38 GMT |
pragma | public |
cache-control | max-age=3600, public |
x-powered-by | W3 Total Cache/2.7.5 |
content-encoding | gzip |
vary | Accept-Encoding |
last-modified | Wed, 11 Sep 2024 14:27:38 GMT |
etag | "110377f8404eb4865df093b7087ac381" |
referrer-policy | strict-origin-when-cross-origin |
access-control-allow-methods | GET,POST |
access-control-allow-headers | Content-Type, Authorization |
content-security-policy | upgrade-insecure-requests; |
cross-origin-embedder-policy | unsafe-none; report-to='default' |
cross-origin-embedder-policy-report-only | unsafe-none; report-to='default' |
cross-origin-opener-policy | unsafe-none |
cross-origin-opener-policy-report-only | unsafe-none; report-to='default' |
cross-origin-resource-policy | cross-origin |
permissions-policy | accelerometer=(), autoplay=(), camera=(), cross-origin-isolated=(), display-capture=(self), encrypted-media=(), fullscreen=*, geolocation=(self), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), payment=*, picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), xr-spatial-tracking=(), gamepad=(), serial=() |
strict-transport-security | max-age=63072000; includeSubDomains; preload |
x-content-security-policy | default-src 'self'; img-src *; media-src * data:; |
x-content-type-options | nosniff |
x-frame-options | SAMEORIGIN |
x-permitted-cross-domain-policies | none |
first | le-vhost |
transfer-encoding | chunked |
statuscode | 200 |
http_version | HTTP/1.1 |
(Nice to have)