HTTP/1.1 200 OKCache-Control: no-cachePragma: no-cacheContent-Length: 59420Content-Type: text/html; charset=utf-8Content-Encoding: gzipExpires: -1Vary: Accept-EncodingServer: Microsoft-IIS/10.0Strict-Transport-Security: max-age=31536000; includeSubDomains; preloadContent-Security-Policy: default-src 'self' www.youtube-nocookie.com dskam.bg dskbank.bg dskpremium.bg dskmobile.bg dskdom.bg dsktranssecurity.bg dskrodina.bg dsk.ventures; script-src *.googleapis.com *.gstatic.com www.google.com apis.google.com *.google-analytics.com connect.facebook.net ajax.aspnetcdn.com platform.twitter.com https://syndication.twitter.com/ https://s.ytimg.com https://publish.twitter.com *.twimg.com platform.linkedin.com http://platform.stumbleupon.com/1/widgets.js cdnjs.cloudflare.com consent.cookiebot.eu consentcdn.cookiebot.eu https://consentcdn.cookiebot.eu/ https://secure.adnxs.com *.doubleclick.net www.googleadservices.com https://www.youtube.com/iframe_api https://dec.azureedge.net/ munchkin.marketo.net http://cdnjs.cloudflare.com/ajax/libs/jquery-mousewheel/3.1.13/jquery.mousewheel.min.js http://eadsrv.com/js/px.js https://snap.licdn.com/li.lms-analytics/insight.min.js www.youtube.com www.googletagmanager.com https://bat.bing.com http://dskbank.webim.chat https://dskbank.webim.chat http://tchatbot.dskbank.bg https://tchatbot.dskbank.bg http://chatbot.dskbank.bg https://chatbot.dskbank.bg *.hotjar.com www.redditstatic.com https://static.addtoany.com dskam.bg dskbank.bg dskpremium.bg dskmobile.bg dskdom.bg dsktranssecurity.bg dskrodina.bg https://uat.dskbank.bg https://snap.licdn.com https://bg.search.etargetnet.com https://unpkg.com https://www.clarity.ms https://bg.hit.gemius.pl https://maxcdn.bootstrapcdn.com/ consent.cookiebot.com consentcdn.cookiebot.com https://consentcdn.cookiebot.com/ dsk.ventures 'self' js.hs-scripts.com js.hs-analytics.net js.hs-banner.com js.hsleadflows.net forms.hubspot.com js.hscollectedforms.net cdn.ampproject.org web-chat.nativechat.com https://cdn.insight.sitefinity.com https://dec.azureedge.net https://player.vimeo.com/api/player.js *.eloqua.com *.en25.com 'unsafe-inline' 'unsafe-eval'; style-src *.googleapis.com *.gstatic.com netdna.bootstrapcdn.com kendo.cdn.telerik.com www.google.com platform.twitter.com/css/ *.twimg.com dskam.bg dskbank.bg dskpremium.bg dskmobile.bg dskdom.bg dsktranssecurity.bg dskrodina.bg https://cdn.jsdelivr.net dsk.ventures 'self' web-chat.nativechat.com https://cdn.insight.sitefinity.com https://dec.azureedge.net 'unsafe-inline'; img-src *.gstatic.com *.googleapis.com platform.tumblr.com web.facebook.com www.facebook.com www.redditstatic.com www.linkedin.com i.ytimg.com https://syndication.twitter.com https://static.licdn.com/scds/common/u/images/apps/connect/sprites/sprite_connect_v14.png pbs.twimg.com platform.twitter.com/css/ *.twimg.com data: blob: https://www.google.bg https://www.google.com *.youtube.com *.doubleclick.net *.linkedin.com dskbank.bg eadsrv.com secure.adnxs.com https://*.insight.sitefinity.com https://*.dec.sitefinity.com dskam.bg https://bat.bing.com http://dskbank.webim.chat https://dskbank.webim.chat http://tchatbot.dskbank.bg https://tchatbot.dskbank.bg http://chatbot.dskbank.bg https://chatbot.dskbank.bg https://alb.reddit.com https://stats.addtoany.com *.googlesyndication.com dskpremium.bg dskmobile.bg dskdom.bg dsktranssecurity.bg dskrodina.bg www.googletagmanager.com https://ib.adnxs.com dsk.ventures 'self' track.hubspot.com js.hsleadflows.net forms.hsforms.com web-chat.nativechat.com https://cdn.insight.sitefinity.com https://dec.azureedge.net *.google-analytics.com *.eloqua.com; font-src 'self' fonts.gstatic.com kendo.cdn.telerik.com netdna.bootstrapcdn.com data: http://dskbank.webim.chat https://chatbot.dskbank.bg; frame-ancestors 'self'; connect-src accounts.google.com *.google-analytics.com https://isic.bg/api/v1/dsk/discounts *.mktoresp.com www.google-analytics.com stats.g.doubleclick.net https://consentcdn.cookiebot.com http://dskbank.webim.chat https://dskbank.webim.chat http://maps.googleapis.com https://maps.googleapis.com http://tchatbot.dskbank.bg https://tchatbot.dskbank.bg http://chatbot.dskbank.bg https://chatbot.dskbank.bg https://consentcdn.cookiebot.eu *.hotjar.com https://stats.addtoany.com *.googlesyndication.com wss://ws28.hotjar.com *.google.com https://googleads.g.doubleclick.net https://cdn.linkedin.oribi.io https://uat.dskbank.bg https://*.hotjar.io wss://ws.hotjar.com 'self' forms.hubspot.com *.hsforms.com https://*.insight.sitefinity.com https://*.dec.sitefinity.com; media-src 'self' data: blob:; child-src consentcdn.cookiebot.com https://www.youtube-nocookie.com/ www.google.com https://consentcdn.cookiebot.eu *.hotjar.com *.doubleclick.net https://static.addtoany.com wss://ws28.hotjar.com 'self' web-chat.nativechat.com; frame-src https://www.youtube-nocookie.com/ https://consentcdn.cookiebot.eu/ https://www.facebook.com/ https://12090499.fls.doubleclick.net/ https://www.google.com/ https://www.youtube.com/ https://td.doubleclick.net https://bg.hit.gemius.pl www.google.com 'self' forms.hsforms.com web-chat.nativechat.comReferrer-Policy: no-referrer-when-downgradeAccess-Control-Allow-Origin: https://uat.dskbank.bgSet-Cookie: sf-trckngckie=; expires=Thu, 02-Jan-2025 07:43:38 GMT; path=/; secure; HttpOnly; SameSite=LaxX-Content-Type-Options: nosniffX-Frame-Options: SAMEORIGINx-permitted-cross-domain-policies: noneX-XSS-Protection: 1; mode=blockX-Powered-By: ASP.NETStrict-Transport-Security: max-age=31536000; IncludeSubDomainsDate: Thu, 02 Jan 2025 07:53:39 GMT