HTTP/1.1 200 OKServer: nginxDate: Sun, 20 Jan 2019 17:44:29 GMTContent-Type: text/html; charset=utf-8Connection: keep-aliveVary: Accept-EncodingCache-Control: no-cacheContent-Security-Policy: script-src 'unsafe-eval' https://www.dropbox.com/static/compiled/js/ https://www.dropbox.com/static/api/ https://www.dropbox.com/page_success/ https://cfl.dropboxstatic.com/static/compiled/js/ https://www.dropboxstatic.com/static/compiled/js/ https://cfl.dropboxstatic.com/static/js/ https://www.dropboxstatic.com/static/js/ https://cfl.dropboxstatic.com/static/previews/ https://www.dropboxstatic.com/static/previews/ https://cfl.dropboxstatic.com/static/api/ https://www.dropboxstatic.com/static/api/ https://cfl.dropboxstatic.com/static/cms/ https://www.dropboxstatic.com/static/cms/ https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ 'unsafe-inline' ; img-src https://* data: blob: ; child-src https://www.dropbox.com/static/serviceworker/ blob: ; default-src 'none' ; frame-src https://* carousel://* dbapi-6://* dbapi-7://* dbapi-8://* itms-apps://* itms-appss://* ; worker-src https://www.dropbox.com/static/serviceworker/ blob: ; style-src https://* 'unsafe-inline' 'unsafe-eval' ; connect-src https://* ws://127.0.0.1:*/ws ; object-src 'self' https://cfl.dropboxstatic.com/static/ https://www.dropboxstatic.com/static/ https://flash.dropboxstatic.com https://swf.dropboxstatic.com https://dbxlocal.dropboxstatic.com ; media-src https://* blob: ; font-src https://* data: ; form-action 'self' https://www.dropbox.com/ https://dl-web.dropbox.com/ https://photos.dropbox.com/ https://paper.dropbox.com/ https://showcase.dropbox.com/ https://accounts.google.com/ https://api.login.yahoo.com/ https://login.yahoo.com/ ; base-uri 'self' ; report-uri https://www.dropbox.com/csp_log?policy_name=metaserver-whitelistDropbox-Streaming: V=1Pragma: no-cacheReferrer-Policy: origin-when-cross-originSet-Cookie: locale=en; Domain=dropbox.com; expires=Fri, 19 Jan 2024 17:44:29 GMT; Path=/; secureSet-Cookie: gvc=MjQxMjg3MDAzNDc1MjkwMzQzMTM5NzY5ODM5MDY3MTk1NzQ1Njc5; expires=Fri, 19 Jan 2024 17:44:29 GMT; httponly; Path=/; secureSet-Cookie: flash=; Domain=dropbox.com; expires=Sun, 20 Jan 2019 17:44:29 GMT; Path=/; secureSet-Cookie: puc=; expires=Sun, 20 Jan 2019 17:44:29 GMT; httponly; Path=/; secureSet-Cookie: bang=; Domain=dropbox.com; expires=Sun, 20 Jan 2019 17:44:29 GMT; Path=/; secureSet-Cookie: t=biNYCUdPVJVO4fW46dUzEDwd; Domain=dropbox.com; expires=Wed, 19 Jan 2022 17:44:29 GMT; httponly; Path=/; secureSet-Cookie: __Host-js_csrf=biNYCUdPVJVO4fW46dUzEDwd; expires=Wed, 19 Jan 2022 17:44:29 GMT; Path=/; secureX-Content-Type-Options: nosniffX-Dropbox-Request-Id: 9ce52408b9d6b0016c11f45d69af5585X-Frame-Options: DENYX-Xss-Protection: 1; mode=blockStrict-Transport-Security: max-age=15552000; includeSubDomainsContent-Encoding: gzip