no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Upgrade, Keep-Alive
default-src 'self' blob: www.google-analytics.com https://services.postcodeanywhere.co.uk stats.g.doubleclick.net; script-src 'self' 'unsafe-inline' https://universe-static.elfsightcdn.com https://*.clarity.ms https://www.freeprivacypolicy.com https://*.giosgusercontent.com service.giosg.com dexte11120.pcapredict.com maxcdn.bootstrapcdn.com https://optimize.google.com https://www.youtube.com https://graph.instagram.com https://www.googleanalytics.com https://www.googleoptimize.com https://*.locrating.com https://*.elfsight.com vimeo.com metrics.responsetap.com https://www.vimeo.com https://*.olark.com https://code.jquery.com https://e.issuu.com https://www.googleadservices.com https://static.olark.com https://extend.vimeocdn.com static-ssl.responsetap.com api.instagram.com *.facebook.net https://s1536.t.eloqua.com play.vidyard.com https://img.en25.com https://play.vidyard.com tagmanager.google.com www.google.com www.google-analytics.com ajax.googleapis.com maps.googleapis.com maps.google.com www.gstatic.com www.googletagmanager.com developers.google.com www.bugherd.com d2iiunr5ws5ch1.cloudfront.net https://indiv25765.pcapredict.com https://static.olark.com https://knrpc.olark.com https://googleads.g.doubleclick.net https://services.postcodeanywhere.co.uk 'unsafe-inline' 'unsafe-eval'; img-src 'self' https://c.bing.com https://*.google-analytics.com https://*.analytics.google.com https://c.clarity.ms https://cdn.giosgusercontent.com https://a19c53f45b440f049d21-3f2703e71e5f5fed646a243f2d21abcb.ssl.cf3.rackcdn.com blob: data: https://optimize.google.com https://www.google-analytics.com *.amazonaws.com https://lh3.googleusercontent.com https://www.googletagmanager.com https://www.vimeo.com https://*.olark.com *.facebook.com https://services.postcodeanywhere.co.uk https://*.ggpht.com https://s1536.t.eloqua.com https://play.vidyard.com https://cdn.vidyard.com https://public.flourish.studio https://maps.google.com https://*.googleapis.com https://scontent.cdninstagram.com/ https://www.google.co.in https://*.xx.fbcdn.net https://pbs.twimg.com media.licdn.com image-store.slidesharecdn.com http://graph.facebook.com https://*.rackcdn.com http://*.cdn.starberry.com www.google.com https://*.gstatic.com maps.gstatic.com maps.googleapis.com stats.g.doubleclick.net; style-src 'self' 'unsafe-inline' https://service.giosg.com https://consent.cookiebot.com https://optimize.google.com https://fonts.googleapis.com https://www.vimeo.com https://*.olark.com https://*.bambooauctions.com maxcdn.bootstrapcdn.com https://services.postcodeanywhere.co.uk d2iiunr5ws5ch1.cloudfront.net tagmanager.google.com; font-src 'self' https://dexters.co.uk https://optimize.google.com maxcdn.bootstrapcdn.com https://*.olark.com fonts.gstatic.com www.bugherd.com data: tagmanager.google.com; frame-src 'self' 'unsafe-inline' https://*.giosg.com www.google-analytics.com https://*.locrating.com https://3982.clients.giosgusercontent.com https://*.google.com bid.g.doubleclick.net https://tinyurl.com https://bit.ly https://*.youtube.com https://www.vimeo.com https://*.olark.com www.facebook.com https://*.amazonaws.com https://e.issuu.com https://play.vidyard.com https://flo.uri.sh https://my.matterport.com https://player.vimeo.com https://issuu.com https://consent.cookiebot.com ; object-src 'self' blob: https://flo.uri.sh *.amazonaws.com https://services.postcodeanywhere.co.uk; connect-src 'self' https://*.google-analytics.com https://*.analytics.google.com https://*.clarity.ms https://*.giosg.com sentry.issuu.com stats.g.doubleclick.net https://graph.instagram.com https://maps.googleapis.com https://*.elfsight.com www.google-analytics.com https://*.olark.com https://services.postcodeanywhere.co.uk; media-src 'self' https://bit.ly https://nichecom.s3.eu-west-1.amazonaws.com https://*.olark.com https://graph.instagram.com
text/html; charset=utf-8
Fri, 12 Jan 2024 16:48:10 GMT
Wed, 17 Aug 2005 00:00:00 GMT
timeout=5, max=100
Fri, 12 Jan 2024 16:48:11 GMT
CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM"
no-cache
strict-origin
Apache/2.4.54 (Ubuntu)
03239340670f831440300acc6c70068d=u0srode1gp7uaivh6rau3qchhb; path=/; HttpOnly;HttpOnly;Secure;SameSite=Strict
max-age=63072000; includeSubdomains; preload
h2
nosniff
SAMEORIGIN
1; mode=block
|