Cache-Control: private, no-cache, no-store, must-revalidate Cf-Ray: 3a969c0c29597217-AMS Content-Security-Policy: default-src 'self' https://www.coinbase.com; child-src 'self' https://www.coinbase.com https://*.online-metrix.net https://*.wpstn.com https://netverify.com https://platform.twitter.com https://www.google.com/recaptcha/ https://cdn.plaid.com/link/ blob: https://coinbase.ada.support; connect-src 'self' https://www.coinbase.com https://api.coinbase.com https://api.mixpanel.com https://*.online-metrix.net https://api.cloudinary.com https://ott9.wpstn.com/live static.coinbase.com wss://ws.coinbase.com wss://ws.coinbase.com:443 https://coinbase.ada.support/api/; font-src 'self' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; img-src 'self' data: https://www.coinbase.com https://images.coinbase.com https://exceptions.coinbase.com https://coinbase-uploads.s3.amazonaws.com https://s3.amazonaws.com/app-public/Coinbase-email/ https://maps.gstatic.com https://ssl.google-analytics.com https://www.google.com https://maps.googleapis.com https://csi.gstatic.com https://www.google-analytics.com https://res.cloudinary.com https://secure.gravatar.com https://i2.wp.com https://*.online-metrix.net https://assets.coinbase.com/ https://hexagon-analytics.com https://api.mixpanel.com blob: static.coinbase.com https://d124s1zbdqkqqe.cloudfront.net https://www.facebook.com/tr; media-src 'self' https://www.coinbase.com blob:; object-src 'self' data: https://www.coinbase.com https://cdn.siftscience.com https://*.online-metrix.net https://www.gstatic.com https://www.google.com/recaptcha/api/; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.coinbase.com https://cdn.siftscience.com https://*.newrelic.com https://bam.nr-data.net https://*.google-analytics.com https://www.google.com https://www.gstatic.com https://*.online-metrix.net https://code.jquery.com https://chart.googleapis.com https://maps.googleapis.com https://maps.gstatic.com https://netverify.com https://ajax.cloudflare.com https://cdn.plaid.com/link/v2/stable/ https://assets.coinbase.com/ static.coinbase.com; style-src 'self' 'unsafe-inline' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; report-uri /csp-report Content-Type: text/html; charset=utf-8 Date: Fri, 06 Oct 2017 06:37:00 GMT Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Public-Key-Pins: max-age=5184000; pin-sha256="r/mIkG3eEpVdm+u/ko/cwxzOMo1bk4TyHIlByibiA5E="; pin-sha256="WoiWRyIOVNa9ihaBciRSC7XHjliYS9VwUGOIud4PB18="; pin-sha256="JbQbUG5JMJUoI6brnx0x3vZF6jilxsapbXGVfjhN8Fg=" Server: cloudflare-nginx Set-Cookie: _coinbase_session=UldsMnJ2b0hvV3huNFBmZ3ZmdUgydjFxcW9nd3hOQ04zZjBkQjRURXc5M3NxYVk1ZkI3aHYwb1hhbnB3emhCenVXckNhQnoxTGhUMHM2aDRyK1lqQk00SEFaMENPZmpZaHgxd0FsN0lzRnlvOXV4WGJldUNldkNWdEp6c3dobHJzOUZieFl1RHh0eXlXZCtMenFsMUM0Y1k5VzNoMXhjMmQ2b3QzQWZaalo0N29nMTZyY3dVV1cwYUpLQ0YvYk13MzdRM1dNWWRneUduWm5JTjJwb2ROZz09LS1vUnNWN2JhbXBjUDBXMXI0VzhDbFdnPT0%3D--da585d34de5ff5d2ec1489c8d2fdb283ec0760e4; path=/; secure; HttpOnly Status: 200 Strict-Transport-Security: max-age=15552000; includeSubDomains; preload Vary: Accept-Encoding X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: DENY X-Permitted-Cross-Domain-Policies: none X-Powered-By: Proof-of-Work X-Request-Id: 0fe79190-f21f-4d00-8151-a4d5c4234a02 X-Xss-Protection: 1; mode=block