Cache-Control: private, no-cache, no-store, must-revalidate Cf-Ray: 3a969bcd2d69732b-AMS Content-Security-Policy: default-src 'self' https://www.coinbase.com; child-src 'self' https://www.coinbase.com https://*.online-metrix.net https://*.wpstn.com https://netverify.com https://platform.twitter.com https://www.google.com/recaptcha/ https://cdn.plaid.com/link/ blob: https://coinbase.ada.support; connect-src 'self' https://www.coinbase.com https://api.coinbase.com https://api.mixpanel.com https://*.online-metrix.net https://api.cloudinary.com https://ott9.wpstn.com/live static.coinbase.com wss://ws.coinbase.com wss://ws.coinbase.com:443 https://coinbase.ada.support/api/; font-src 'self' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; img-src 'self' data: https://www.coinbase.com https://images.coinbase.com https://exceptions.coinbase.com https://coinbase-uploads.s3.amazonaws.com https://s3.amazonaws.com/app-public/Coinbase-email/ https://maps.gstatic.com https://ssl.google-analytics.com https://www.google.com https://maps.googleapis.com https://csi.gstatic.com https://www.google-analytics.com https://res.cloudinary.com https://secure.gravatar.com https://i2.wp.com https://*.online-metrix.net https://assets.coinbase.com/ https://hexagon-analytics.com https://api.mixpanel.com blob: static.coinbase.com https://d124s1zbdqkqqe.cloudfront.net https://www.facebook.com/tr; media-src 'self' https://www.coinbase.com blob:; object-src 'self' data: https://www.coinbase.com https://cdn.siftscience.com https://*.online-metrix.net https://www.gstatic.com https://www.google.com/recaptcha/api/; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.coinbase.com https://cdn.siftscience.com https://*.newrelic.com https://bam.nr-data.net https://*.google-analytics.com https://www.google.com https://www.gstatic.com https://*.online-metrix.net https://code.jquery.com https://chart.googleapis.com https://maps.googleapis.com https://maps.gstatic.com https://netverify.com https://ajax.cloudflare.com https://cdn.plaid.com/link/v2/stable/ https://assets.coinbase.com/ static.coinbase.com; style-src 'self' 'unsafe-inline' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; report-uri /csp-report Content-Type: text/html; charset=utf-8 Date: Fri, 06 Oct 2017 06:36:50 GMT Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Public-Key-Pins: max-age=5184000; pin-sha256="r/mIkG3eEpVdm+u/ko/cwxzOMo1bk4TyHIlByibiA5E="; pin-sha256="WoiWRyIOVNa9ihaBciRSC7XHjliYS9VwUGOIud4PB18="; pin-sha256="JbQbUG5JMJUoI6brnx0x3vZF6jilxsapbXGVfjhN8Fg=" Server: cloudflare-nginx Set-Cookie: _coinbase_session=VWhmTnJabmRJa2ExSGxqTVpZTnlWZlB2R3dCRXlPaHFzZlU1SGdDa2poUktaeWMwRFJkbzhQVktPSEVBb0QrakxKNm5QVW1PdENFU0FNczJWbmQveGlZa25zVllNTTNjeW5KSHNldjZKK0tSYllNb0x4Uk5SeWl4QVRpbHFJMXliSmtEa0hrbHJua3Z5SEVuMDR1OUR0YjNFQUZlT3NnMVZoTnVIcE1HNnhtQmVpQS8xU051Z0FtZHBscVc5VXFJSThjWFpvb1Z6MlBlQ1ViT0J5bFlmZz09LS1DTWUraG9oWDU4M2lLVWxiT1krS21BPT0%3D--efad8146fb4cc719f62a677d635b07d276f572bf; path=/; secure; HttpOnly Status: 200 Strict-Transport-Security: max-age=15552000; includeSubDomains; preload Vary: Accept-Encoding X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: DENY X-Permitted-Cross-Domain-Policies: none X-Powered-By: Proof-of-Work X-Request-Id: 6baf8f76-5314-4654-8116-0daafa90ca78 X-Xss-Protection: 1; mode=block