X-Request-Id: 00f20ec0-c0c9-4c02-8a61-a4e75b6fa867
Content-Type: text/html; charset=utf-8
X-Content-Type-Options: nosniff
X-Permitted-Cross-Domain-Policies: none
X-Diaspora-Version: 0.6.5.0-pea529173
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Vary: Accept-Encoding
X-Runtime: 0.037131
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Content-Security-Policy-Report-Only: default-src 'none'; child-src 'self' www.youtube.com w.soundcloud.com twitter.com platform.twitter.com syndication.twitter.com player.vimeo.com www.mixcloud.com www.dailymotion.com media.ccc.de bandcamp.com www.instagram.com; connect-src 'self' embedr.flickr.com geo.query.yahoo.com nominatim.openstreetmap.org api.github.com; font-src 'self'; form-action 'self' platform.twitter.com syndication.twitter.com www.paypal.com; frame-ancestors 'self'; img-src data: *; media-src https: data:; script-src 'self' 'unsafe-eval' platform.twitter.com cdn.syndication.twimg.com widgets.flickr.com embedr.flickr.com platform.instagram.com 'unsafe-inline'; style-src 'self' 'unsafe-inline' platform.twitter.com *.twimg.com; report-uri https://despora.report-uri.io/r/default/csp/reportOnly
X-Download-Options: noopen
Connection: keep-alive
Server: nginx
X-Frame-Options: sameorigin
X-Git-Revision: ea529173952d679cbf7be50529b0eda3d0d79eaa
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=31536000
Transfer-Encoding: chunked
Date: Sat, 13 May 2017 11:30:46 GMT
X-Git-Update: 2017-04-19 12:43:21 +0200
Set-Cookie: _diaspora_session=VHdnYlNyN29XWDgydXRNemVRKzZKcnZZK0RNRlZvdmtiMEZVTHVOV1NmbTV6aG1qUzFxUkRXcFRVTkFNaUFzQStVRmk0ZjJCNHQ0RUVvaXhtU3M2eEIzeVo3MGVyTktNR3llMjZ0QlFDSklsamVyeUZva2p6RTlyK3phdVhscXNJUnhGRkZOY0RKaGlNZE9RbHJtOEVraWxLNnFucFBsVitTeXNYaW5ydk5KL0ZQK25WRWh2aE0xRnFKWGhYaEdQdTZjaUhPbnVCSXpjYjNZWC9sN2hPZz09LS0wZG5yWURoSWpxdWZqaWV6MzFMUURBPT0%3D--21a990a410a8801861238c918caec435ac993401; path=/; HttpOnly; secure
ETag: W/"8c0f97cf29f9795e70d6d9fe41c31332"