Cache-Control: private, no-cache, no-store, must-revalidate Cf-Ray: 3a969b381ce614f7-CDG Content-Security-Policy: default-src 'self' https://www.coinbase.com; child-src 'self' https://www.coinbase.com https://*.online-metrix.net https://*.wpstn.com https://netverify.com https://platform.twitter.com https://www.google.com/recaptcha/ https://cdn.plaid.com/link/ blob: https://coinbase.ada.support; connect-src 'self' https://www.coinbase.com https://api.coinbase.com https://api.mixpanel.com https://*.online-metrix.net https://api.cloudinary.com https://ott9.wpstn.com/live static.coinbase.com wss://ws.coinbase.com wss://ws.coinbase.com:443 https://coinbase.ada.support/api/; font-src 'self' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; img-src 'self' data: https://www.coinbase.com https://images.coinbase.com https://exceptions.coinbase.com https://coinbase-uploads.s3.amazonaws.com https://s3.amazonaws.com/app-public/Coinbase-email/ https://maps.gstatic.com https://ssl.google-analytics.com https://www.google.com https://maps.googleapis.com https://csi.gstatic.com https://www.google-analytics.com https://res.cloudinary.com https://secure.gravatar.com https://i2.wp.com https://*.online-metrix.net https://assets.coinbase.com/ https://hexagon-analytics.com https://api.mixpanel.com blob: static.coinbase.com https://d124s1zbdqkqqe.cloudfront.net https://www.facebook.com/tr; media-src 'self' https://www.coinbase.com blob:; object-src 'self' data: https://www.coinbase.com https://cdn.siftscience.com https://*.online-metrix.net https://www.gstatic.com https://www.google.com/recaptcha/api/; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.coinbase.com https://cdn.siftscience.com https://*.newrelic.com https://bam.nr-data.net https://*.google-analytics.com https://www.google.com https://www.gstatic.com https://*.online-metrix.net https://code.jquery.com https://chart.googleapis.com https://maps.googleapis.com https://maps.gstatic.com https://netverify.com https://ajax.cloudflare.com https://cdn.plaid.com/link/v2/stable/ https://assets.coinbase.com/ static.coinbase.com; style-src 'self' 'unsafe-inline' https://www.coinbase.com https://assets.coinbase.com/ static.coinbase.com; report-uri /csp-report Content-Type: text/html; charset=utf-8 Date: Fri, 06 Oct 2017 06:36:26 GMT Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Public-Key-Pins: max-age=5184000; pin-sha256="r/mIkG3eEpVdm+u/ko/cwxzOMo1bk4TyHIlByibiA5E="; pin-sha256="WoiWRyIOVNa9ihaBciRSC7XHjliYS9VwUGOIud4PB18="; pin-sha256="JbQbUG5JMJUoI6brnx0x3vZF6jilxsapbXGVfjhN8Fg=" Server: cloudflare-nginx Set-Cookie: _coinbase_session=Yk5xV1ZxV1NRSm0yU0NwK0d5TmlzMENJcWdRR25VZzJncGtYOXpwaHB5QzA4OHNDU0dBdW5ZdlJjTWZqZU13YXM2dU1JcXZpb1I4UUhMUEJ2SGJWNHBqMVhxSER6RkhPK2JINXZIalNGbitMSXdhSGxYZEY1T2VXUTNDaXhYZ1VxSW9OMUZhRmhzdDRQREhBWGdtcEFTbEsyeGFISmVRMVZ2TEVxTEVYMlBpTE12VnBaMTVPWVIwSWlUS3gxdG0vaHlpUDlsTWsvdlIrQTd3c1RrQVpSdz09LS1DbGZuMzR6MzdBM09SYkdsRmhRL093PT0%3D--e152557da51f6a6cd4de468f5c3bb3fdc21d3f36; path=/; secure; HttpOnly Status: 200 Strict-Transport-Security: max-age=15552000; includeSubDomains; preload Vary: Accept-Encoding X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: DENY X-Permitted-Cross-Domain-Policies: none X-Powered-By: Proof-of-Work X-Request-Id: cbcad58a-1bf4-4d0f-8062-cc1d56874135 X-Xss-Protection: 1; mode=block