| server | nginx/1.27.5 |
| content-type | text/html |
| last-modified | Tue, 14 Apr 2026 10:05:02 GMT |
| etag | "2c81-64f68bb988825" |
| cache-control | max-age=60 |
| expires | Tue, 14 Apr 2026 10:07:21 GMT |
| content-security-policy | upgrade-insecure-requests; block-all-mixed-content; default-src 'none'; img-src 'self'; style-src 'unsafe-inline' 'self'; form-action 'self'; frame-ancestors 'none'; require-trusted-types-for 'script'; |
| cross-origin-embedder-policy | require-corp |
| cross-origin-opener-policy | same-origin |
| cross-origin-resource-policy | same-origin |
| permissions-policy | accelerometer=(), ambient-light-sensor=(), autoplay=(), battery=(), bluetooth=(), browsing-topics=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), execution-while-not-rendered=(), execution-while-out-of-viewport=(), fullscreen=(), gamepad=(), geolocation=(), gyroscope=(), hid=(), idle-detection=(), local-fonts=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), serial=(), speaker-selection=(), usb=(), web-share=(), xr-spatial-tracking=() |
| referrer-policy | strict-origin |
| x-content-type-options | nosniff |
| x-frame-options | deny |
| strict-transport-security | max-age=31536000 |
| content-encoding | br |
| via | 1.1 varnish, 1.1 varnish |
| accept-ranges | bytes |
| age | 0 |
| date | Tue, 14 Apr 2026 21:01:19 GMT |
| x-served-by | cache-bma-essb1270054-BMA, cache-fra-etou8220157-FRA |
| x-cache | HIT, HIT |
| x-cache-hits | 1607, 0 |
| x-timer | S1776200480.714117,VS0,VE25 |
| vary | Accept-Encoding |
| alt-svc | h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 |
| content-length | 3546 |
| statuscode | 200 |
| http_version | HTTP/2 |
(Nice to have)