/* X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN Referrer-Policy: strict-origin-when-cross-origin Permissions-Policy: camera=(), microphone=(), geolocation=() Content-Security-Policy: default-src 'self'; img-src 'self' data: https:; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com; style-src 'self' 'unsafe-inline'; connect-src 'self' https://www.google-analytics.com https://*.analytics.google.com https://*.google-analytics.com https://*.googletagmanager.com; font-src 'self'; frame-ancestors 'self' /css/* Cache-Control: public, max-age=31536000, immutable /js/* Cache-Control: public, max-age=31536000, immutable /icons/* Cache-Control: public, max-age=31536000, immutable /images/* Cache-Control: public, max-age=31536000, immutable /index.html Cache-Control: public, max-age=3600, must-revalidate / Cache-Control: public, max-age=3600, must-revalidate