no-store, no-cache, max-age=0, must-revalidate, proxy-revalidate,max-age=0, must-revalidate, proxy-revalidate
155911
default-src 'self' https://*.heritage.com.au; script-src 'self' http://10.110.25.158 http://10.120.25.132 http://10.110.25.132:15871 https://*.heritage.com.au https://connect.facebook.net https://siteintercept.qualtrics.com https://www.images-home.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://s.ytimg.com https://*.siteintercept.qualtrics.com https://snap.licdn.com https://s.yimg.com https://bat.bing.com https://js.adsrvr.org https://connect.facebook.net https://vxml4.plavxml.com https://bs.serving-sys.com https://www.google-analytics.com https://vxml4.plavxml.com https://www.googletagmanager.com https://maps.googleapis.com https://*.widgetworks.com.au https://*.cloudfront.net https://online.flippingbook.com 'unsafe-inline' 'unsafe-eval' https://analytics.google.com; style-src 'self' 'unsafe-inline' https://maxcdn.bootstrapcdn.com https://fonts.googleapis.com https://code.jquery.com; base-uri 'self'; connect-src 'self' https://s.yimg.com https://siteintercept.qualtrics.com https://*.doubleclick.net https://www.google-analytics.com https://bat.bing.com https://maps.googleapis.com https://apps.heritage.com.au https://apps.heritage.com.au https://*.heritage.com.au https://forms.heritage.com.au https://lib-ap-1.brilliantcollector.com https://s.qualtrics.com https://cdn.linkedin.oribi.io/ https://analytics.google.com; font-src 'self' https://fonts.gstatic.com https://*.heritage.com.au https://maxcdn.bootstrapcdn.com https://fonts.googleapis.com; frame-src 'self' https://match.adsrvr.org https://insight.adsrvr.org https://*.doubleclick.net https://servedby.flashtalking.com https://www.qzzr.com/ https://www.googletagmanager.com/ https://*.widgetworks.com.au https://player.vimeo.com/ https://gpm.westernunion.com/ https://xjobs.brassring.com/ https://flickrembed.com https://heritagebank.au1.qualtrics.com https://www.youtube.com/ https://forms.heritage.com.au/ https://*.heritage.com.au https://player.vimeo.com; img-src 'self' https://103.243.148.117 https://10.120.25.152 https://www.google.com/pagead/1p-user-list/957642343/ https://www.google.com.au/pagead/1p-user-list/957642343/ https://www.google.com.au/* https://sp.analytics.yahoo.com https://vxml4.plavxml.com https://www.googletagmanager.com https://p.adsymptotic.com https://www.google.com/ads/* https://www.google.com.au/ads/* https://www.google.com.au/ads/ga-audiences https://www.google.com/ads/ga-audiences https://www.heritage.com.au https://sc-cm.hbs.net.au https://*.doubleclick.net https://bat.bing.com https://*.linkedin.com https://www.facebook.com https://www.google-analytics.com https://www.images-home.com https://*.heritage.com.au https://*.googleapis.com https://maps.gstatic.com data:; manifest-src 'self'; media-src 'self';
text/html; charset=utf-8
Thu, 11 Jan 2024 01:53:41 GMT
0
no-cache
same-origin
ASP.NET_SessionId=c4zypr12frj52smlahchvnqo; path=/; secure; HttpOnly; samesite=strict, SC_ANALYTICS_GLOBAL_COOKIE=2637515186304a49b0a02e34a898b1e4|False; domain=.heritage.com.au; expires=Sun, 08-Jan-2034 01:53:41 GMT; path=/; secure; HttpOnly; samesite=strict, TS01d943dd=018f99a95c49ae45aa4377444b32711e00385d500302f757b8f1f3a4cb2e8be86977005a3f5e9faecc92c5cbac07d2d351e2789f7b3c835275970010e6253767b761c3315b; Path=/; Secure; HTTPOnly; samesite=strict, TS01ad2844=018f99a95c279ca31a9e3efa06cdedb98a5e117d6902f757b8f1f3a4cb2e8be86977005a3f2b0218a6ffd2324c5f53f1755467a61cdf58bc306c051a8562406c8ca6de59d7; path=/; domain=.heritage.com.au; HTTPonly; Secure; samesite=strict
max-age=16070400; includeSubDomains
|