discovercamping.ca | Analytics by SecurityHeaders

HTTP Headers report for discovercamping.ca

Header Name Header Data
HTTP status code 200
Etag W/"0x8DD7D783483DD07"
X-Ms-Version 2018-03-28
Strict-Transport-Security max-age=31536000; includeSubDomains
X-Fd-Int-Roxy-Purgeid 726
X-Cache-Info L1_T2
X-Permitted-Cross-Domain-Policies none
Access-Control-Allow-Origin camping.bcparks.ca
Reporting-Endpoints csp-endpoint="https://camping.bcparks.ca/api/csp-violation"
Content-Security-Policy font-src 'self' fonts.gstatic.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com; img-src 'self' data: www.googletagmanager.com www.google.ca www.google.com fonts.gstatic.com www.google-analytics.com googleads.g.doubleclick.net www.google-analytics.com www.facebook.com; object-src 'none'; frame-ancestors 'none'; frame-src 'self' td.doubleclick.net www.googletagmanager.com apps.cac1.pure.cloud apps.mypurecloud.com; worker-src blob: 'self'; media-src 'none'; manifest-src 'self'; form-action 'self'; default-src 'self'; connect-src 'self' canadacentral-1.in.applicationinsights.azure.com dc.services.visualstudio.com js.monitor.azure.com static.queue-it.net camis.queue-it.net assets.queue-it.net apps.cac1.pure.cloud apps.mypurecloud.com d37hm4w715hh7d.cloudfront.net dhqbrvplips7x.cloudfront.net www.googletagmanager.com www.google-analytics.com fonts.gstatic.com fonts.googleapis.com region1.google-analytics.com analytics.google.com stats.g.doubleclick.net googleads.g.doubleclick.net www.google.ca www.google.com www.googleadservices.com region1.analytics.google.com js.adsrvr.org connect.facebook.net www.facebook.com api-cdn.cac1.pure.cloud api-cdn.mypurecloud.com webmessaging.cac1.pure.cloud webmessaging.mypurecloud.com wss://webmessaging.cac1.pure.cloud wss://webmessaging.mypurecloud.com; script-src 'self' 'sha256-vtmHxQXR+wvgF29Uief/lyL14Zr7TvfAKjS5U81jXCg=' 'sha256-7NnRdz2lrBXM+jWoeJGwVuv+6u6z3tsIxi58B8UyLqw=' 'sha256-MhtPZXr7+LpJUY5qtMutB+qWfQtMaPccfe7QXtCcEYc=' 'sha256-N7LG6dinbuucvyioFUfta7Ks37GVqmj1SX/DwtWDfOk=' 'sha256-Cw4Kt3KuWBw85SXmWXVkrzDpl2MKjA/96tMzOafS9ZI=' 'sha256-E9IZHE5Cf+Tq88g8FOor/iH3Z3VfWp0yfJdwKdbBDsQ=' 'sha256-pAE7e1FBO76wO8L+kOSJxp3Z6GEDrdMNEXOevIxZ2p4=' 'sha256-xjzVYdwqzNlD6ruAl4dV02ELvV/A2MBADVrpIgzVIFg=' 'sha256-RUZARueJZwUKKDlalQ3KaVr/PzQHp3QLorH8Lw+lCCE=' 'sha256-+KDudG8cbukhyZo9w1Bk0/x0hp4KnM4+VXI5GmtnSS4=' 'sha256-WtKM0rM+tnDWM3xVef3dXlRq0QxEU9WpOenP/yA4khE=' 'sha256-aeFGnc/TCf/BHmGnYJj32jmvvs9fzpi39BKVBdGDjAE=' 'sha256-X57Yezg9aI92jK96iVN7es7MKhY36K/STfY4fFHhpaE=' 'sha256-3vyb80Q/T8ZaMTp9P1knDMxFOMwAzqePLq/ijltgE4w=' 'sha256-4hO5q7Cr8nuGPe1CzDrJ10QSkzjc15vZGhvkr0WkwoM=' 'sha256-U4HS2H47jDFsLvME9+8bOG7H7mGo4gvrl7vp36fWo7I=' 'sha256-2f3xeaqpTBMmFPuz/ex260juRflTx6P1dYXTjOOAtAk=' 'sha256-ctN6M3tgAucVQxR4YbWy634k60SrYF6rfVkEVKiawoM=' 'sha256-4b0RwxkQNP2xMDJJuUOw7/l/Nl+d5Ce/9U0h4CtdWJw=' 'sha256-wp8q4jHsatU1H+frMhf8D6KRQPeQEpUCnpBCsIo2dpU=' 'sha256-xgS3MXsIhxzaustvP8oRobhBqgvU5ZMzSU9HFjX5KpY=' 'sha256-+rdAuUGQwskKoZc8WG6A6zxtLgOLkcnyfYVOmeYrz1w=' 'sha256-+L3dpR1yzjqwdqGO9Wga+la+apRR6wTrxmO1M6Zx41E=' 'sha256-DYJh/4TdYyNoif4MvuWwbO7LjT4QT7J1Sw1oBqAcD00=' 'sha256-l/aRxLGy7ZtQ5YinN/+Jfwv93iXcNVd+PwRLHakB+iE=' 'unsafe-hashes' blob: assets.queue-it.net static.queue-it.net camis.queue-it.net apps.cac1.pure.cloud apps.mypurecloud.com dhqbrvplips7x.cloudfront.net www.googletagmanager.com www.google-analytics.com www.google.com www.googleadservices.com js.adsrvr.org connect.facebook.net; report-to csp-endpoint; report-uri /api/csp-violation;
X-Azure-Ref 20250419T043459Z-r175cd98c7cxbkbjhC1DUSam1c0000000730000000004evp
Last-Modified Thu, 17 Apr 2025 06:22:18 GMT
X-Ms-Request-Id 37b048f5-001e-0001-456a-afce5e000000
Permissions-Policy bluetooth=(), camera=(), display-capture=(), fullscreen=(), geolocation=(), gyroscope=(), microphone=(), usb=(), xr-spatial-tracking=()
X-Content-Type-Options nosniff
X-Frame-Options deny
Connection keep-alive
Content-Type text/html
Vary Accept-Encoding
X-Cache TCP_HIT
Referrer-Policy strict-origin-when-cross-origin
Cache-Control no-cache
Report-To { group: "csp-endpoint", "max_age": 86400, "endpoints": [ { "url": "https://camping.bcparks.ca/api/csp-violation" }] }
Date Sat, 19 Apr 2025 04:34:59 GMT

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar