Content-Security-Policy: default-src https: *.ufg.pl; script-src https: *.ufg.pl 'unsafe-inline' 'unsafe-eval';style-src https: *.ufg.pl 'unsafe-inline';img-src 'self' data: https: www.google-analytics.com; frame-src https: *.ufg.pl; media-src data: https: *.ufg.pl
Date: Mon, 15 May 2017 10:54:17 GMT
Accept-Ranges: bytes
Set-Cookie: INFOPORTALID=bGELvpDbUD_hc28C_3cZg1JYKs_yi2XJVThFh4q8m2Ia3gPofunJ!1407455412!1613546950; path=/; HttpOnly;Secure;HttpOnly
X-AspNet-Version: 2.0.50727
X-WebKit-CSP: default-src https: *.ufg.pl; script-src https: *.ufg.pl 'unsafe-inline' 'unsafe-eval';style-src https: *.ufg.pl 'unsafe-inline';img-src 'self' data: https: www.google-analytics.com; frame-src https: *.ufg.pl; media-src data: https: *.ufg.pl
X-Content-Type-Options: nosniff
X-AspNetMvc-Version: 1.0
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Content-Length: 351
HTTP/1.1 200 OK
X-Content-Security-Policy: default-src https: *.ufg.pl; script-src https: *.ufg.pl;style-src https: *.ufg.pl ;img-src 'self' data: https: https: www.google-analytics.com; frame-src https: *.ufg.pl; media-src data: https: *.ufg.pl ;options inline-script eval-script
Content-Type: text/html; charset=UTF-8
X-Powered-By: ASP.NET
Content-Language: en
Strict-Transport-Security: max-age=15768000
Vary: User-Agent,Accept-Encoding
Last-Modified: Mon, 19 Sep 2016 13:20:26 GMT
Server: Microsoft-IIS/7.0