X-Frame-Options: DENY
X-Content-Type-Options: nosniff
Timing-Allow-Origin: *
X-UA-Compatible: IE=edge
Server: Apache/2.2.15
Pragma: no-cache
P3P: policyref="/w3c/p3p.xml", CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT"
HTTP/1.1 200 OK
Date: Wed, 07 Feb 2018 21:55:01 GMT
Access-Control-Allow-Origin: *
Content-Type: text/html; charset=UTF-8
Vary: User-Agent
Expires: Wed, 14 Feb 2018 21:55:01 GMT
Strict-Transport-Security: max-age=31536000; includeSubDomains
Last-Modified: Wed, 07 Feb 2018 20:55:01 GMT
Cache-Control: must-revalidate, no-transform
Connection: keep-alive, close
Set-Cookie: PHPSESSID=j7bjhtn9jdvhkpnvrrqmrcsud3; path=/
X-XSS-Protection: 1; mode=block
Content-Security-Policy: default-src * data:; script-src 'unsafe-inline' 'unsafe-eval' 'self' https://*.facebook.com http://*.facebook.com https://*.facebook.net http://*.facebook.net https://*.fbcdn.net http://*.fbcdn.net http://*.twitter.com https://*.twitter.com http://*.google.com http://*.googleapis.com https://*.googleapis.com http://*.gstatic.com https://*.gstatic.com https://*.google.com http://*.google-analytics.com https://*.google-analytics.com https://*.doubleclick.net http://*.doubleclick.net https://*.googleadservices.com http://*.googleadservices.com http://*.schema.org https://*.schema.org http://*.googletagmanager.com https://*.googletagmanager.com http://*.ampproject.org https://*.ampproject.org; style-src 'unsafe-inline' *