0: HTTP/1.1 200 OK
Date: Wed, 29 Jan 2025 15:00:09 GMT
Content-Type: text/html; charset=utf-8
Connection: close
last-modified: Tue, 28 Jan 2025 14:16:54 GMT
expires: Wed, 29 Jan 2025 15:00:08 GMT
Cache-Control: ["no-cache","no-store, no-cache, must-revalidate, post-check=0, pre-check=0"]
pragma: no-cache
strict-transport-security: max-age=15724800; includeSubDomains
content-security-policy: default-src 'none'; base-uri 'self'; form-action 'self'; manifest-src 'self'; script-src 'self' 'strict-dynamic' https: https://app.collectly.co https://pay.collectly.co https://sidebar.collectly.co https://cdn.ravenjs.com https://js.stripe.com https://cdn.plaid.com 'sha256-2bDo5Ql5cTGioNiNmKS9wIbRALb3fGfEzd56bV4NyJU=' 'sha256-vOS0JnKKYezdhn6PIFrGmSNnArpTcOKPeoblLMseIww=' 'sha256-FuLakNXhB89FBy2C60ur8J4zdO1u0wODiZQ8hsvdZQA=' 'sha256-uXcZde9BLG224o85fRa3V1MEVVk4rVYAHtxJ4XScwwA=' 'nonce-EDNnf03nceIOfn39fn3e9h3swfa' 'nonce-NFMnf15noePWps34gm4r0j4degb' 'nonce-IOps21fffoeIOps66fnf03noeGz'; script-src-elem 'self' https: https://cdn.jsdelivr.net https://edge.fullstory.com https://cdn.ravenjs.com https://js.stripe.com https://cdn.plaid.com 'sha256-6RQitgeJ+uMDk2v2WWZvWMec2vTLWZY8yn1iD/0ZNQI=' 'sha256-2bDo5Ql5cTGioNiNmKS9wIbRALb3fGfEzd56bV4NyJU=' 'sha256-vOS0JnKKYezdhn6PIFrGmSNnArpTcOKPeoblLMseIww=' 'sha256-FuLakNXhB89FBy2C60ur8J4zdO1u0wODiZQ8hsvdZQA=' 'sha256-uXcZde9BLG224o85fRa3V1MEVVk4rVYAHtxJ4XScwwA=' 'nonce-EDNnf03nceIOfn39fn3e9h3swfa' 'nonce-NFMnf15noePWps34gm4r0j4degb' 'nonce-IOps21fffoeIOps66fnf03noeGz'; style-src 'self' https: https://rsms.me https://cdn.jsdelivr.net https://fonts.googleapis.com 'sha256-sSQBpWYnvoD0uLvrRXjN8oXJ2tec076C8CH3f+/xBeI=' 'sha256-t4fbwA76PlDgHYcZfgYvZO+SvW8mQMEdyHa0ew1Qlyw=' 'nonce-FDNnf03noeIOps23fn3e9h3swfa' 'nonce-BDNnf03noeIOps23fn3e9h3swfa' 'nonce-NFMnf15noePWps34gm4r0j4degb'; font-src https: https://pay.collectly.co/ https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com https://rsms.me data: safari-extension: chrome-extension: moz-extension:; connect-src 'self' https: wss://pay.collectly.co https://app.collectly.co https://collectly-files-prod.s3.amazonaws.com https://sentry.collectly.co https://rs.fullstory.com https://fonts.googleapis.com https://cdn.ravenjs.com https://collectly.zendesk.com https://edge.fullstory.com; img-src * 'self' data: cid: blob: https:; frame-ancestors https://app.collectly.co https://betteruc.com https://forms.glpg.net https://*.glpg.net https://forms.glpg.to https://pay.collectly.co https://samedayhealth.com https://www.keyautismservices.com https://firstcoastcardio.com https://advancedurology.com/resources/online-bill-pay https://advancedurology.com https://www.advancedgynecology.com https://esdpeds.com https://js.stripe.com/ https://www.flaglerfamilymedicine.com https://www.flaglerfamilymedicine.com/pay-your-bill https://familyfirst-urgentcare.com/pay https://familyfirst-urgentcare.com https://metropolitanderm.com/ https://www.hillsboroeyeclinic.com https://www.ciccenters.com https://payment.cofmc.com https://pay.tellmed.org https://www.gohce.com https://findmytherapist.com https://www.rabyintegrativemedicine.com https://www.pyramidhc.com https://www.nystromcounseling.com https://www.afcurgentcare.com https://www.ctpomd.com https://rivieraallergy.com https://advancedgynecology.preview.octanesites.com https://cminj.doctormmdev1.com/ https://advancedurology.preview.octanesites.com/resources/online-bill-pay https://advancedurology.preview.octanesites.com https://mnwcare.com https://www.mnwcare.com https://avitacareatlanta.com https://cminj.com https://avitacareatstg.wpenginepowered.com/ https://signatureurgentcare.com https://www.michiganprimarycarepartners.com https://arksurgicalhospital.com https://www.grandrapidspain.com; frame-src https://*.collectly.co/ https://forms.glpg.net https://forms.glpg.to https://samedayhealth.com https://www.keyautismservices.com https://firstcoastcardio.com https://www.advancedurology.com https://www.advancedgynecology.com https://esdpeds.com https://js.stripe.com/ https://cdn.plaid.com; object-src 'none'; upgrade-insecure-requests; report-to csp-group
x-content-type-options: nosniff
access-control-allow-origin: *
access-control-allow-credentials: true
access-control-allow-methods: GET, PUT, POST, DELETE, PATCH, OPTIONS
access-control-allow-headers: DNT,Keep-Alive,User-Agent,X-Requested-With,If-Modified-Since,Cache-Control,Content-Type,Range,Authorization
access-control-max-age: 1728000
report-to: {
"group": "csp-group",
"max_age": 1800,
"endpoints": [
{
"url": "https:\/\/sentry.collectly.co\/api\/15\/security\/?sentry_key=20985970a2a8a9b5b8b8ed101ec73b32"
}
]
}
x-xss-protection: 1; mode=block
referrer-policy: no-referrer
CF-Cache-Status: DYNAMIC
Server: cloudflare
CF-RAY: 909a17159c270b85-AMS
|