HTTP/1.1 200 200 Content-Length: 0 Connection: keep-alive Server: nginx Date: Sat, 04 Jan 2025 21:00:40 GMT X-Application-Context: application Set-Cookie: JSESSIONID=4166C29D277B8FF7B18C0D46433CC0AA; Path=/; HttpOnly X-Frame-Options: SAMEORIGIN Frame-Options: SAMEORIGIN Referrer-Policy: strict-origin-when-cross-origin X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff X-Permitted-Cross-Domain-Policies: master-only Strict-Transport-Security: max-age=31536000;includeSubdomains; preload X-Download-Options: SAMEORIGIN Content-Security-Policy: default-src * 'unsafe-inline' 'unsafe-eval' data: https: ;frame-ancestors 'self'