HTTP/1.1 200 200 Content-Length: 0 Connection: keep-alive Server: nginx Date: Sat, 17 May 2025 01:08:48 GMT X-Application-Context: application Set-Cookie: JSESSIONID=34152BF8E8C4D52E4E88847446ACE138; Path=/; HttpOnly X-Frame-Options: SAMEORIGIN Frame-Options: SAMEORIGIN Referrer-Policy: strict-origin-when-cross-origin X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff X-Permitted-Cross-Domain-Policies: master-only Strict-Transport-Security: max-age=31536000;includeSubdomains; preload X-Download-Options: SAMEORIGIN Content-Security-Policy: default-src * 'unsafe-inline' 'unsafe-eval' data: https: ;frame-ancestors 'self'