Content-Type: text/html
Set-Cookie: JSESSIONID=FB227B2666C68558C46C9C14BD5251B0; Path=/; Secure; HttpOnly; SameSite=Lax
Content-Type: text/html;charset=UTF-8
Content-Length: 6775
X-Frame-Options: SAMEORIGIN
X-Xss-Protection: 1; mode=block
X-Content-Type-Options: nosniff
Content-Security-Policy: default-src 'self';font-src 'self' data:;script-src 'self' 'unsafe-inline' 'unsafe-eval' data:;style-src 'self' 'unsafe-inline';frame-ancestors 'none'
Strict-Transport-Security: max-age=31536000