Cache-Control: public, max-age=300 Content-Length: 583 Content-Security-Policy: default-src 'self' ; connect-src 'self' https://api.braintreegateway.com https://client-analytics.braintreegateway.com https://accounts.snapchat.com https://adsapi.snapchat.com https://admanager-api-dot-teamko619.appspot.com https://snap-central-dot-teamko619.appspot.com https://snap-central-dev-dot-teamko619.appspot.com https://adsapisc.appspot.com https://storage.googleapis.com https://selfserve-api-dot-teamko619.appspot.com https://rich-snap-platform.appspot.com https://rich-snap-platform-dev.appspot.com https://preproduction-dot-softserve-prod.appspot.com wss://*.zopim.com https://*.zopim.com https://snap-web-chat.appspot.com https://googleads.g.doubleclick.net ; script-src 'self' https://www.googleadservices.com https://www.google-analytics.com https://apis.google.com ; style-src 'self' 'unsafe-inline' blob: https://snap-central-dot-teamko619.appspot.com ; font-src 'self' data: https://snap-central-dot-teamko619.appspot.com ; media-src 'self' data: blob: https://storage.googleapis.com https://rich-snap-platform.appspot.com https://rich-snap-platform-dev.appspot.com blob: ; child-src 'self' https://ads.springboard.la https://accounts.google.com https://content.googleapis.com https://assets.braintreegateway.com ; report-uri /_api/reports/csp-violations ; img-src 'self' data: https://www.googleadservices.com https://www.google.com https://googleads.g.doubleclick.net https://storage.googleapis.com https://www.google-analytics.com https://v2uploads.zopim.io https://rich-snap-platform.appspot.com https://rich-snap-platform-dev.appspot.com https://admanager-api-dot-teamko619.appspot.com https://adsapi.snapchat.com https://render.bitstrips.com https://lens-storage.storage.googleapis.com https://snapcodes.storage.googleapis.com blob: ; Content-Type: text/html Date: Thu, 05 Oct 2017 10:55:19 GMT Pragma: Public Server: Google Frontend Status: 200 Strict-Transport-Security: max-age=31536000 X-Cloud-Trace-Context: ca935c9a169108165f9e1155d1be796a X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-Xss-Protection: 1; mode=block