Cache-Control: private, no-cache, no-store, must-revalidate Cf-Ray: 3a969bb9cd9068c6-CDG Content-Security-Policy: default-src 'self' https://www.coinbase.com; child-src 'self' https://www.coinbase.com https://*.online-metrix.net https://*.wpstn.com https://netverify.com https://platform.twitter.com https://www.google.com/recaptcha/ https://cdn.plaid.com/link/ blob: https://coinbase.ada.support; connect-src 'self' https://www.coinbase.com https://api.coinbase.com https://api.mixpanel.com https://*.online-metrix.net https://api.cloudinary.com https://ott9.wpstn.com/live static.coinbase.com wss://ws.coinbase.com wss://ws.coinbase.com:443 https://coinbase.ada.support/api/; font-src 'self' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; img-src 'self' data: https://www.coinbase.com https://images.coinbase.com https://exceptions.coinbase.com https://coinbase-uploads.s3.amazonaws.com https://s3.amazonaws.com/app-public/Coinbase-email/ https://maps.gstatic.com https://ssl.google-analytics.com https://www.google.com https://maps.googleapis.com https://csi.gstatic.com https://www.google-analytics.com https://res.cloudinary.com https://secure.gravatar.com https://i2.wp.com https://*.online-metrix.net https://assets.coinbase.com/ https://hexagon-analytics.com https://api.mixpanel.com blob: static.coinbase.com https://d124s1zbdqkqqe.cloudfront.net https://www.facebook.com/tr; media-src 'self' https://www.coinbase.com blob:; object-src 'self' data: https://www.coinbase.com https://cdn.siftscience.com https://*.online-metrix.net https://www.gstatic.com https://www.google.com/recaptcha/api/; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.coinbase.com https://cdn.siftscience.com https://*.newrelic.com https://bam.nr-data.net https://*.google-analytics.com https://www.google.com https://www.gstatic.com https://*.online-metrix.net https://code.jquery.com https://chart.googleapis.com https://maps.googleapis.com https://maps.gstatic.com https://netverify.com https://ajax.cloudflare.com https://cdn.plaid.com/link/v2/stable/ https://assets.coinbase.com/ static.coinbase.com; style-src 'self' 'unsafe-inline' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; report-uri /csp-report Content-Type: text/html; charset=utf-8 Date: Fri, 06 Oct 2017 06:36:47 GMT Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Public-Key-Pins: max-age=5184000; pin-sha256="r/mIkG3eEpVdm+u/ko/cwxzOMo1bk4TyHIlByibiA5E="; pin-sha256="WoiWRyIOVNa9ihaBciRSC7XHjliYS9VwUGOIud4PB18="; pin-sha256="JbQbUG5JMJUoI6brnx0x3vZF6jilxsapbXGVfjhN8Fg=" Server: cloudflare-nginx Set-Cookie: _coinbase_session=SmZ1K0hqeGlrOUg2OTJCZ3Nqd3VSa0pEa1FZRGtWY0swVHJjaDJqenJTVnlqazBXR0ZKbE1HRUtuZkhBaXA2MTR6MmpXY293S1YyQi9lQ0ZxdEJ0Sk5selFzUjlkaVVBS09NZUN3N3JyMnZTWExoZERJbm5DaDd2WGxCMGdHRUw4eUVWV1ZVWTRYSnJGSytvV3NmRVhEQzBvOWxGQmtIYkRHSHFCcEFSaHBnY2FnSXZpOUQvdkUybFU0N1RYblZuZEMxVlgxL1hHcDVCTWFXNjdxQVBPQT09LS1RanpVNGxEQk5oa3FPMU5xNVlWM2RBPT0%3D--1d88018f1ef1644fc5703c308a53630ae2930256; path=/; secure; HttpOnly Status: 200 Strict-Transport-Security: max-age=15552000; includeSubDomains; preload Vary: Accept-Encoding X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: DENY X-Permitted-Cross-Domain-Policies: none X-Powered-By: Proof-of-Work X-Request-Id: 255104c8-bb58-451b-af9d-fa2243dcefc1 X-Xss-Protection: 1; mode=block