keep-alive
gzip
default-src 'self' https://cms.talent-pool.com https://services-customerstaging.allyo.com https://rs.fullstory.com https://trk-api.crossengage.io https://l.sharethis.com https://www.facebook.com https://www.linkedin.com https://www.snapengage.com https://privacyportal.onetrust.com https://eu2-live.inside-graph.com https://eu2-cdn.inside-graph.com wss://eu2-live.inside-graph.com blob: https://restcountries.eu https://ipinfo.io https://services.allyo.com https://www.google-analytics.com https://stats.g.doubleclick.net https://notifier-configs.airbrake.io https://api.airbrake.io https://cdn.cookielaw.org/consent/undefined/undefined.json https://cdn.cookielaw.org https://datastudio.google.com https://app.satismeter.com ; script-src 'self' https://collection.decibelinsight.net https://cdn.decibelinsight.net https://eu2-live.inside-graph.com https://eu2-track.inside-graph.com http://js.maxmind.com https://js.maxmind.com https://app.crossengage.io https://trk-api.crossengage.io https://fullstory.com https://edge.fullstory.com http://browser-update.org https://www.linkedin.com https://optanon.blob.core.windows.net https://eu2-cdn.inside-graph.com https://services-customerstaging.allyo.com https://rs.fullstory.com https://freegeoip.net http://freegeoip.net https://www.googletagmanager.com https://tagmanager.google.com https://www.google-analytics.com https://storage.googleapis.com https://ajax.googleapis.com https://app.satismeter.com https://pixel.convertize.io https://embed.typeform.com https://browser-update.org https://www.snapengage.com https://connect.facebook.net https://sjs.bizographics.com https://px.ads.linkedin.com https://platform-api.sharethis.com https://buttons-config.sharethis.com https://s3.amazonaws.com/jotrack/ https://snap.licdn.com https://services.allyo.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.cookielaw.org/scripttemplates/ https://cdn.cookielaw.org https://www.googleadservices.com https://googleads.g.doubleclick.net https://static.hotjar.com https://script.hotjar.com https://www.redditstatic.com https://player.vimeo.com https://fi-api.qa.predictivehire.com https://at.alicdn.com blob: 'unsafe-inline' 'unsafe-eval' ; style-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://use.typekit.net https://p.typekit.net https://tagmanager.google.com https://fonts.googleapis.com https://rsms.me https://optanon.blob.core.windows.net https://eu2-cdn.inside-graph.com; font-src 'self' https://eu2-live.inside-graph.com https://eu2-track.inside-graph.com https://fonts.gstatic.com data: https://rsms.me https://use.typekit.net https://*.hotjar.com; img-src 'self' https://px4.ads.linkedin.com https://cms.talent-pool.com https://fonts.gstatic.com https://customer-assets.allyo.com https://i.etsystatic.com https://ssl.gstatic.com https://www.gstatic.com https://www.google.com https://eu2-cdn.inside-graph.com https://1000logos.net https://www.google-analytics.com https://www.google.de https://www.facebook.com https://stats.g.doubleclick.net https://www.snapengage.com https://optanon.blob.core.windows.net https://dev.visualwebsiteoptimizer.com https://rs.fullstory.com blob: https://px.ads.linkedin.com https://www.linkedin.com https://www.stickpng.com https://www.google.ae https://lh3.googleusercontent.com https://www.googletagmanager.com https://i.pinimg.com https://cdn.cookielaw.org https://flagcdn.com https://googleads.g.doubleclick.net https://www.google.hu https://px.ads.linkedin.com https://alb.reddit.com https://www.snapengage.com https://browser-update.org https://*.hotjar.com data: ; connect-src 'self' wss://collection.decibelinsight.net https://collection.decibelinsight.net https://px.ads.linkedin.com https://randstad-privacy.my.onetrust.com https://metrics.hotjar.io wss://websocket.talent-pool.com https://websocket.talent-pool.com https://cms.talent-pool.com https://cdn.cookielaw.org https://rs.fullstory.com https://trk-api.crossengage.io https://notifier-configs.airbrake.io https://services.allyo.com https://app.satismeter.com https://*.google-analytics.com https://privacyportal-eu.onetrust.com https://cluster.allyo.com wss://cluster.allyo.com https://content.hotjar.io https://surveystats.hotjar.io https://ask.hotjar.io https://privacyportal.onetrust.com https://eu2-live.inside-graph.com https://in.hotjar.com wss://ws24.hotjar.com wss://*.hotjar.com https://*.hotjar.com https://vc.hotjar.io https://eu2-cdn.inside-graph.com wss://eu2-live.inside-graph.com https://vimeo.com https://fi-api.qa.predictivehire.com https://fi-api.sandbox.predictivehire.com https://cdn.linkedin.oribi.io ; frame-src 'self' data: https://rebrandly.com https://www.youtube.com https://connect.facebook.net https://c.sharethis.mgr.consensu.org https://talent-pool.typeform.com https://www.jometer.com https://clickmeter.com https://trk.thematopi.com https://conversions.clickmeter.com https://jotrack.s3.amazonaws.com https://www.google.com/recaptcha/ https://player.vimeo.com https://vars.hotjar.com ; object-src 'self' data: https://www.youtube.com ;, frame-ancestors https://cms.talent-pool.com
text/html; charset=utf-8
Wed, 10 Jan 2024 06:52:54 GMT
W/"5f2a7-juCKhpq4Bo7exJUA3z5VK5IVmbU"
microphone=(), camera=(), geolocation=(), autoplay=(self), display-capture=(), document-domain=(), storage-access=(), payment=()
origin-when-cross-origin, strict-origin-when-cross-origin
nginx
i18n_redirected=en; Path=/; Expires=Thu, 09 Jan 2025 06:52:53 GMT; SameSite=Lax; Secure
max-age=31536000; includeSubDomains; preload
Accept-Encoding
nosniff
sameorigin
master-only
1; mode=block
|