keep-alive
gzip
upgrade-insecure-requests; block-all-mixed-content; report-uri https://report.api.jtl-software.com/csp/; default-src 'self';base-uri 'self';form-action 'self' www.facebook.com/tr/ kundencenter.jtl-software.de checkout.jtl-software.com;frame-ancestors 'self';connect-src 'self' www.google.com/pagead/landing adservice.google.com/pagead/regclk www.google-analytics.com/j/collect www.google-analytics.com/g/collect stats.g.doubleclick.net/j/collect region1.google-analytics.com region1.google-analytics.com/g/collect www.googletagmanager.com/a maps.googleapis.com/maps/api/mapsjs/ maps.googleapis.com/%24rpc/google.internal.maps.mapsjs.v1.MapsJsInternalService/GetViewportInfo bat.bing.com/action/0 bat.bing.com/actionp/0 www.facebook.com/tr/ api.personio.de/recruiting/applicant stats.jtl-software.de/matomo.php crm.jtl-software.de consent.jtl-software.de;font-src 'self' cdn.jtl-software.com data:;frame-src 'self' tpc.googlesyndication.com www.google.com/recaptcha/api2/anchor www.recaptcha.net/recaptcha/api2/anchor bid.g.doubleclick.net www.facebook.com www.youtube.com/embed/ jira.jtl-software.de consent.jtl-software.de;child-src 'self' tpc.googlesyndication.com www.google.com/recaptcha/api2/anchor www.recaptcha.net/recaptcha/api2/anchor bid.g.doubleclick.net www.facebook.com www.youtube.com/embed/ jira.jtl-software.de consent.jtl-software.de;img-src 'self' cdn.jtl-software.com googleads.g.doubleclick.net/pagead/viewthroughconversion/ www.google.ae/pagead/ www.google.at/pagead/ www.google.ba/pagead/ www.google.be/pagead/ www.google.br/pagead/ www.google.ca/pagead/ www.google.co.in/pagead/ www.google.co.uk/pagead/ www.google.com/pagead/ www.google.com.au/pagead/ www.google.com.tr/pagead/ www.google.com.ua/pagead/ www.google.com.pk/pagead/ www.google.ch/pagead/ www.google.cz/pagead/ www.google.de/pagead/ www.google.dk/pagead/ www.google.es/pagead/ www.google.fr/pagead/ www.google.ge/pagead/ www.google.hr/pagead/ www.google.hu/pagead/ www.google.ie/pagead/ www.google.it/pagead/ www.google.lu/pagead/ www.google.nl/pagead/ www.google.pl/pagead/ www.google.com.sa/pagead/ www.google.se/pagead/ www.google.sk/pagead/ www.google.co.kr/pagead/ www.google-analytics.com/collect region1.google-analytics.com/g/collect www.googletagmanager.com/a maps.googleapis.com/maps/api/js/StaticMapService.GetMapImage maps.gstatic.com/mapfiles/ maps.googleapis.com/maps/vt lh3.ggpht.com khms0.googleapis.com khms1.googleapis.com maps.googleapis.com/maps/api/mapsjs/gen_204 bat.bing.com/action/0 www.linkedin.com px.ads.linkedin.com px4.ads.linkedin.com www.facebook.com img.youtube.com i.ytimg.com bilder.jtl-software.de data:;object-src 'none';script-src 'self' cdn.jtl-software.com www.google.com/pagead/conversion_async.js www.google.com/pagead/1p-conversion/ www.googleadservices.com/pagead/conversion_async.js www.googleadservices.com/pagead/conversion/ tpc.googlesyndication.com/sodar/ googleads.g.doubleclick.net/pagead/viewthroughconversion/ www.recaptcha.net/recaptcha/api.js www.gstatic.com/recaptcha/releases/ www.google.com/recaptcha/api.js ssl.google-analytics.com/ga.js www.google-analytics.com/analytics.js www.google-analytics.com/plugins/ua/ec.js www.google-analytics.com/plugins/ua/ecommerce.js www.googletagmanager.com/gtm.js www.googletagmanager.com/gtag/js maps.googleapis.com/maps/ maps.googleapis.com/maps-api-v3/api/js/ bat.bing.com/bat.js bat.bing.com/p/action/56224185.js connect.facebook.net/en_US/fbevents.js connect.facebook.net/signals/config/ www.youtube.com/iframe_api www.youtube.com/s/player/ jira.jtl-software.de stats.jtl-software.de/matomo.js crm.jtl-software.de consent.jtl-software.de/dist/client/privacy.js 'unsafe-inline' 'unsafe-eval' data:;style-src 'self' cdn.jtl-software.com jira.jtl-software.de crm.jtl-software.de consent.jtl-software.de/dist/client/privacy.css 'unsafe-inline';worker-src 'self' blob:;
text/html; charset=UTF-8
Tue, 09 Jan 2024 11:08:57 GMT
Tue, 09 Jan 2024 10:53:43 GMT
autoplay=(),accelerometer=(),camera=(),fullscreen=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),midi=(),payment=(),usb=()
public
nginx
nosniff
all
same-origin
max-age=63072000; includeSubDomains; preload
SAMEORIGIN
1; mode=block
|