public, max-age=0, must-revalidate
gzip
default-src 'self' https://kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io;script-src 'self' 'unsafe-inline' 'unsafe-eval' https://kuluttaja.fi https://production.kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io https://cdn.cookielaw.org/;connect-src 'self' https://kuluttaja.fi https://production.kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io https://*.schibsted.com https://*.kxcdn.com https://*.stellate.sh https://cdn.cookielaw.org/ https://geolocation.onetrust.com/ https://privacyportal-de.onetrust.com/;img-src 'self' https://kuluttaja.fi https://production.kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io https://*.schibsted.com https://*.kxcdn.com https://cdn.cookielaw.org/;frame-src 'self' https://kuluttaja.fi https://production.kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io https://cdn.cookielaw.org/;form-action 'self' https://kuluttaja.fi https://production.kuluttaja.fi https://*.google.com https://*.gstatic.com/ https://*.googletagmanager.com https://*.google-analytics.com https://*.analytics.google.com https://*.googleadservices.com https://*.google.fi https://*.googleapis.com https://*.g.doubleclick.net https://*.doubleclick.net https://*.googlesyndication.com https://*.facebook.com https://*.facebook.net https://*.fbcdn.net https://*.fbcdn.com https://*.salesforce.com https://*.force.com https://*.visualforce.com https://*.igodigital.com https://*.hotjar.com wss://*.hotjar.com https://*.hotjar.io;font-src 'self' https://fonts.gstatic.com;base-uri 'self';frame-ancestors 'self';object-src 'none';script-src-attr 'none';style-src 'self' https: 'unsafe-inline';upgrade-insecure-requests
text/html; charset=utf-8
same-origin
Wed, 10 Jan 2024 18:27:21 GMT
W/"3981a-Kq+X+UQqJ9Mzd4HBWeanjutBd3s"
?1
geolocation=(), interest-cohort=(), microphone=(), camera=(self)
no-referrer
max-age=15552000; includeSubDomains
chunked
Accept-Encoding, Accept-Encoding
1.1 google
nosniff
off
noopen
SAMEORIGIN
none
0
|