31536000 strict-transport-security: max-age=31556926; includeSubDomains; preload vary: Accept-Encoding, Origin x-content-type-options: nosniff timing-allow-origin: * access-control-allow-origin: https://dashboard.stripe.com content-length: 2303 X-Firefox-Spdy: h2