X-Webkit-Csp HTTP Header
Common values for this header
- self
- default-src 'self'; script-src 'self'; connect-src 'self'; img-src 'self' data:; style-src 'self'; reflected-xss block;
- default-src 'self'
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline';img-src 'self' data: ;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline';img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org ;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;referrer no-referrer;img-src 'self' data: ;
- default-src *; script-src 'self' http://www.google-analytics.com http://suggest.infospace.com http://api.autocompleteplus.com http://www.googletagservices.com http://d.yimg.com https://completr.appspot.com https://s.yimg.com http://js.wincyahoocontent.com ; frame-src 'self' http://*.yhs4.search.yahoo.com http://ad.adserver-pro.net https://s.yimg.com ; font-src 'none'; connect-src 'self'; media-src 'self'; object-src 'none'; style-src 'self';
- frame-ancestors 'self'
- default-src 'self'; script-src 'self' www.google.com www.gstatic.com; frame-src www.google.com; style-src 'self' 'unsafe-inline'; font-src 'self' data:
- default-src 'self'; script-src 'self' 'unsafe-inline'
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;img-src 'self' data: ;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: ;
- allow 'self'
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org ;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' ;referrer no-referrer;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.137; img-src 'self' http://hn.inspectlet.com data:;
- frame-ancestors 'self' *.appinstech.com *.globalremarket.com *.xchanging.com
- frame-src *;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.160.1.2; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://181.119.19.115; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://77.243.232.198; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google-analytics.com ajax.googleapis.com; style-src 'self' 'unsafe-inline'; img-src 'self' *.google-analytics.com
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://5.178.66.37; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://69.89.2.30; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://212.76.126.131; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' *.googleapis.com telekom.jobs; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.gstatic.com *.google.com *.googleapis.com *.liveperson.net telekom.jobs; style-src 'self' 'unsafe-inline' *.googleapis.com telekom.jobs; frame-src *; img-src * data: blob: filesystem:; font-src 'self' fonts.gstatic.com telekom.jobs data:; media-src *
- script-src 'self' https: data: 'unsafe-inline' 'unsafe-eval'; object-src 'self' data: https:
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://65.99.209.7; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://79.170.244.81; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.111.104.180; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://128.127.48.181; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://41.76.212.97; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://109.234.200.247; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://207.210.220.226; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' https://pik.lapetition.be; script-src 'self' 'nonce-RE8gUn+zUDzgldiOg89U5RXfYlo=' 'eval' https://pik.lapetition.be; object-src 'none'; style-src 'self'; img-src 'self' https://pik.lapetition.be; child-src 'none'; font-src 'self'
- default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline';img-src 'self' data:;
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: ;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://77.79.240.184; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.239; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.153; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://79.171.34.145; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' chrome-extension:; connect-src 'self' chrome-extension:; font-src 'self' themes.googleusercontent.com chrome-extension:; frame-src 'none' chrome-extension:; img-src 'self' https://ssl.google-analytics.com chrome-extension: data:; media-src 'none' chrome-extension:; object-src 'none' chrome-extension:; script-src 'self' https://ssl.google-analytics.com 'unsafe-inline' chrome-extension:; style-src 'self' 'unsafe-inline' fonts.googleapis.com chrome-extension:; script-nonce 9f092bad1785f22105231f3808d0c733;
- default-src 'self' http://themes.googleusercontent.com http://assets.premierit.com https://assets.premierit.com; script-src 'self' 'unsafe-eval' http://ajax.googleapis.com https://ajax.googleapis.com http://maps.googleapis.com https://maps.googleapis.com http://maps.gstatic.com https://maps.gstatic.com https://premier-preplms.staging.premierithosting.com https://lms.premieriteportfolio.com; style-src 'self' 'unsafe-inline' http://code.jquery.com https://code.jquery.com; img-src 'self' https://www.surgeonsportfolio.org/images/ http://www.surgeonsportfolio.org/images/ http://maps.gstatic.com https://maps.gstatic.com http://csi.gstatic.com https://csi.gstatic.com; frame-src 'self' https://premier-preplms.staging.premierithosting.com https://lms.premieriteportfolio.com; font-src 'self'
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://197.96.55.250; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://5.9.235.163; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://72.249.63.123; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://162.219.160.171; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://80.65.252.230; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self';script-src 'self' 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline';img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://178.20.253.31; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://67.227.144.61; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self'; script-src 'unsafe-inline';
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.168; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' 'unsafe-inline'
- default-src 'self' https://www.google.com ;script-src 'self' https://www.google.com 'unsafe-inline' 'unsafe-eval';style-src 'self' 'unsafe-inline' https://www.google.com ;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org https://www.google.com;
- frame-ancestors survey.hlb.com.my www.hlb.com.my apps.facebook.com www.facebook.com *.vivocha.com *.youtube.com *.facebook.com staticxx.facebook.com www.googletagmanager.com gateway.hlb.com.my www.ecloan.com.my
- default-src *; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.motability.org.uk *.motabilityoperations.co.uk *.browsealoud.com *.google-analytics.com https://ssl.google-analytics.com *.googletagmanager.com https://*.googletagmanager.com https://apis.google.com stats.g.doubleclick.net https://*.liveperson.net https://*.lpsnmedia.net https://*.liveengage.net https://*.liveengage.com https://*.liveper.sn *.jwplatform.com *.jwpcdn.com *.jwpsrv.com *.amazonaws.com *.googleapis.com *.newscred.com *.googleadservices.com https://connect.facebook.net; style-src 'self' 'unsafe-inline' *.googleapis.com *.newscred.com *.googleadservices.com *.browsealoud.com *.jwpcdn.com; img-src 'self' data: * https://ssl.google-analytics.com; font-src 'self' fonts.gstatic.com *.jwpcdn.com; media-src blob: 'self' https://*.lpsnmedia.net *.speechstream.net *.jwplatform.com *.jwpcdn.com *.jwpsrv.com; child-src blob: 'self' https://*.liveperson.net https://*.lpsnmedia.net *.jwplatform.com *.jwpcdn.com *.jwpsrv.com https://bid.g.doubleclick.net; frame-src blob: 'self' https://*.liveperson.net https://*.lpsnmedia.net *.jwplatform.com *.jwpcdn.com *.jwpsrv.com https://bid.g.doubleclick.net https://www.google.com
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://118.88.19.43; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://178.20.253.7; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.158; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src 'self' 'unsafe-inline'
- default-src 'self' ;script-src 'self' 'unsafe-inline' 'unsafe-eval';referrer no-referrer;style-src 'self' 'unsafe-inline' ;img-src 'self' data: *.tile.openstreetmap.org *.tile.opencyclemap.org;
- default-src 'self';
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://187.95.206.246; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://94.23.118.243; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self'; script-src 'unsafe-inline' 'unsafe-eval' 'self' https://www.youtube.com https://s.ytimg.com https://www.google-analytics.com; object-src 'self' https://www.youtube.com; style-src 'unsafe-inline' 'self' https://fonts.googleapis.com; img-src 'self' data: https://www.google-analytics.com; frame-src 'self' https://www.youtube.com https://youtube.com https://player.vimeo.com; font-src 'self' https://fonts.gstatic.com
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://110.4.41.65; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://185.113.132.225; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self';script-src 'self' 'unsafe-eval' https://*.googleapis.com https://maps.gstatic.com https://www.google.com/jsapi https://www.google.com/uds;connect-src 'self' https://api.mailgun.net/v2/address/validate https://maps.googleapis.com https://www.google.com/jsapi https://www.google.com/uds;style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com https://www.google.com/uds;font-src 'self' https://fonts.gstatic.com https://maxcdn.bootstrapcdn.com;img-src 'self' https: data:
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://41.79.240.23; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://188.209.214.27; img-src 'self' http://hn.inspectlet.com data:;
- default-src 'self' data:; script-src 'self' https://www.google.com https://ajax.googleapis.com https://cdn.inspectlet.com 'unsafe-inline' 'unsafe-eval'; style-src 'self' https://www.google.com https://ajax.googleapis.com 'unsafe-inline' blob:; connect-src 'self' http://hn.inspectlet.com wss://ws.inspectlet.com https://198.54.122.246; img-src 'self' http://hn.inspectlet.com data:;
- frame-ancestors https://a-book.hotelzon.com/ https://a-ce.hotelzon.com/ https://a-zonconnect.hotelzon.com/ https://a-pay.hotelzon.com/ https://go.hotelzon.com https://login.hotelzon.com
Related headers
Share your comments or questions with us
We always read all your comments. If your question is of general interest, it may be added to this page for the benefit of everyone.