y content-security-policy: default-src 'none'; img-src 'self'; media-src 'self'; style-src 'unsafe-inline' cache-control: max-age=31536000, immutable access-control-allow-origin: * x-ratelimit-clear: 24.000 x-ratelimit-remaining: 3576 X-Firefox-Http3: h3