Heroku
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c7cf176427cf1764239bdea767d1e59e07d1e59e07d1e59e0
Found 2 files trough .DS_Store spidering: /files /trimestrales
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c7cf176427cf1764239bdea767d1e59e07d1e59e07d1e59e0
Found 2 files trough .DS_Store spidering: /files /trimestrales
Open service 35.71.150.51:443 · ir.gcc.com
2026-01-08 21:44
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"e8824b25f00414ebba5d31f537875043"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=kV9SxMJHTvdkKMZOv6P1K%2B0wGKmeycnGcaJ%2FGnvpEh0%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767908695"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=kV9SxMJHTvdkKMZOv6P1K%2B0wGKmeycnGcaJ%2FGnvpEh0%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767908695"
Server: Heroku
Set-Cookie: _cemento_session=NndSWHBlbi9LTitQZjlzZDhOT0hETVZJT3lxbUJmZitYcnJwMUdvUzhtd3B4WVc3QWxpTDV2SXMwbWxIWW9FUENNeU9pbEtGT3RUL2o0SS82YWtuT2FXaHRJVzgwRTBCa0Rib0xjZUlFRHBycmVCV1A0RVZxK3UzNVV2ZkVXbzAvMWFpMGxjdC9aNzhad3IxejNKMXVWbDJoS2R2THV6MXpUQkFMcmVyaytJPS0td3NRajhKcVRrN0QrbmpuQmNLa1lNZz09--ff5e95864c4e3c86c2e3055848a1ca042e541cb1; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 36e0cbcc-1789-c3de-bf54-0f026bab8d4f
X-Runtime: 0.009205
X-Xss-Protection: 1; mode=block
Date: Thu, 08 Jan 2026 21:44:55 GMT
Connection: close
Transfer-Encoding: chunked
Open service 3.33.161.45:443 · www.ir.gcc.com
2026-01-08 19:43
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"2db4be0dd296c79826be9bbbd69b305d"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=8p57U5X6YPMP8Mn97DdDWHydp%2B%2F5ZJplUMEKKUtku6M%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767901399"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=8p57U5X6YPMP8Mn97DdDWHydp%2B%2F5ZJplUMEKKUtku6M%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767901399"
Server: Heroku
Set-Cookie: _cemento_session=d20zamNSR3dJT3JyZUpobnFuMEp0UGQ2Q0RhMXlod0VqWmpETXBzbWU0blRtaEVGVndPWUt3S2NyMjNZb05kbFY2djF6S1J4M0hMWUtxaGhNQzkrV0MxeHdhK0R0RUxQUUVVV3orQXFqcVQ5TG9DcXduMVZGY2hPSkI2TFcvUHdOK1gzMThtOUFDQmJBV1RlUHNoSDBQYllrTmg4UzM1ZFJKM01LQ3EvNWdzPS0tUG9mbk8vK1RWakpWbUdoM0tXaEVoZz09--9ca429e7b16fb3e621d28392e8b51ded4c499afd; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 3441fd23-d6cd-a064-a6c6-41ae445f792f
X-Runtime: 0.009909
X-Xss-Protection: 1; mode=block
Date: Thu, 08 Jan 2026 19:43:19 GMT
Connection: close
Transfer-Encoding: chunked
Open service 35.71.150.51:443 · ir.gcc.com
2026-01-01 21:52
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"7e16ff10ab4bd3460669cb50210feff8"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=FYhRTSslecpQ4ojeBkaxUhcGzsJKYPqWUERc0mN%2B%2F4A%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767304340"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=FYhRTSslecpQ4ojeBkaxUhcGzsJKYPqWUERc0mN%2B%2F4A%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767304340"
Server: Heroku
Set-Cookie: _cemento_session=TWNDc3BRVmh2TmxuMUZuUXZpNlQrZklsbENmWCthOUg3R1NMNVd1QitLWjN5NVJGY0FPdExZbXJxR1ZqbzRWVlo2eXlDUXRMTmNlM1RDNTAyM1NrV0hmeGRHOUc4R0VaUWZFdkZ0bE9WeGJnaEdDMmJxTTcvaHdKNGo1OGMxc1drWjRPSVlNa2F5RUR1bkZrS1dpdGR0T0dldGxYU2cxSWs0dWVJYnVRandjPS0tVXh6SEd4RFdQRnUrQW1FbkpDQ3J4Zz09--42ee208fc3f25736cfc6cc854720756f6d248732; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 12106f11-ea21-4323-52d1-4bb04563e749
X-Runtime: 0.009675
X-Xss-Protection: 1; mode=block
Date: Thu, 01 Jan 2026 21:52:20 GMT
Connection: close
Transfer-Encoding: chunked
Open service 3.33.161.45:443 · www.ir.gcc.com
2026-01-01 20:14
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"de2b933c31f02d51d7d4df34baa4ac7c"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=nFPtkKqnrpFjm3%2F73P1o287Zd9NrummGcHY2T5yJHEg%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767298475"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=nFPtkKqnrpFjm3%2F73P1o287Zd9NrummGcHY2T5yJHEg%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767298475"
Server: Heroku
Set-Cookie: _cemento_session=MTJtbDdFYnUxbGpDVzZ0dHV6M1VHQjZQYStBT2praytaWmVhUkRVaVplWEx6UlpwYmZvQ0YvYm96U3EvUlhRNmFKVGNSZEp6Y25yVzVZbGdTcGV2MDdPSkpZSXg1dU1rSzRwejNBRzNIa2NkaDVvUy96eEtrS0t6WDc3TkVLcTkwbGZQT2VFVE4rZnk0bERYUnFOUjR1SE5BdjJtOU9Ha2V6MFJqRlN1RkRrPS0tdlJKOFUvWm9RQ1VXS0RMQUxBU3lRUT09--a0a34239e7e214374afb1564ec79dffa761b4da0; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: f1f6f46e-5b38-d9e8-1fdd-49149c0e3946
X-Runtime: 0.008721
X-Xss-Protection: 1; mode=block
Date: Thu, 01 Jan 2026 20:14:35 GMT
Connection: close
Transfer-Encoding: chunked
Open service 35.71.150.51:443 · ir.gcc.com
2025-12-30 06:20
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"83a2313d51969c52a4fd6c8809257f5a"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=HWnoMDZbrZNo6wpt9Zhj3O3D5sdw%2FFMt%2BV5NICIcowk%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767075644"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=HWnoMDZbrZNo6wpt9Zhj3O3D5sdw%2FFMt%2BV5NICIcowk%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767075644"
Server: Heroku
Set-Cookie: _cemento_session=ZkdIeDhKZEJXUFpGQ3JjNlNGVzRnMGliN0dsWDVhQnZXdGJneHVKK00xTkNzYndsWVFCbHpDMHpNTTJZdDVtZDQzbk02YWhhb1FFNVdrWW4yc0lRR1VJVS85anRMSEFjVkg1bm9ZSzNTYW5odzNKNGVWeUt0eUJVTStub2lvalNRVEI2SjM1ejdwcTFqQkk4R0k4aFZISXpCZjFTZFpHUmJKVmhaUjBVOXM4PS0tK2ptVHowSy9aYW00QWljUGJCVHFVdz09--5a0a7c89ec576a638925df03fd7a04528ed0ce39; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 652415e4-2fa6-30fe-4960-cb395a75c521
X-Runtime: 0.010717
X-Xss-Protection: 1; mode=block
Date: Tue, 30 Dec 2025 06:20:44 GMT
Connection: close
Transfer-Encoding: chunked
Open service 3.33.161.45:443 · www.ir.gcc.com
2025-12-30 04:22
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"38fb4dfe718c1f7de8fecf64783ba846"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=pm3RXIrhvnvREzNy2REXChAAXuO60oAubFKDp2IASpo%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1767068551"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=pm3RXIrhvnvREzNy2REXChAAXuO60oAubFKDp2IASpo%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1767068551"
Server: Heroku
Set-Cookie: _cemento_session=SkpTbkdrOG5wOGl2NkVCN3BMNU1vTnN3VXFud0Y1K3UrRlR2Wm5oNTQ1VzhDWGxSTitaZEpNZStqOUxhTWFjMGdKQkdKT2w3a3YzZG9LeURIaG1FbWdqUEFITkYrN2piZXBKL3BCVlY1dWNkcytLb3BOMHhoMTUrTm5naGNTK2pWRlFtNUZCdWpFS0pOc3pXYlpLUzRReWFHMnp5dE5HRC81T3RUZEtTV0hRPS0tUE1FaXlkSmpJQVZlNUVGR3hXQmo1Zz09--bf027f8862a30eac1c5dc64f325fc06ca6eaef1b; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: dac87275-2713-b2b3-c668-1ebe9ca60013
X-Runtime: 0.010542
X-Xss-Protection: 1; mode=block
Date: Tue, 30 Dec 2025 04:22:31 GMT
Connection: close
Transfer-Encoding: chunked
Open service 35.71.150.51:443 · ir.gcc.com
2025-12-22 07:28
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"42264da58977d817b2a7b34006f6cd58"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=9dIZN9u31kBmBjB4rfvDd3%2FIoHGbe9XRZTvJl1WxN2o%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766388497"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=9dIZN9u31kBmBjB4rfvDd3%2FIoHGbe9XRZTvJl1WxN2o%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766388497"
Server: Heroku
Set-Cookie: _cemento_session=T294aXNSblQ5ZVFhUUsyTlVvVk5YMVc1NklVOXZsQlhWUlZnNlpQcXhxVWJPODVBKzZZTVA5RW9jcU9NMVJScHk4TDdESG9qWWp2enU1MmRqemZYVzVyK1ExTnBhejdEMitBTXJ0M3ZucFY1VmhnYzZiUUEzdmxXQUpMZkhPUXV5dWwva3oraWtLSnRZbkZCbkErM1RxUjU0SnVDMGlvR0tlcVAvc0dUMlZnPS0tTkRMaVh6Zk5qSWozQkdndHB6WmNxQT09--80d1609973b2f6ade04f5bcd4fc572ebae4e173f; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 910f9d3a-7b3a-0713-83ef-4fb40d58fcfa
X-Runtime: 0.010219
X-Xss-Protection: 1; mode=block
Date: Mon, 22 Dec 2025 07:28:17 GMT
Connection: close
Transfer-Encoding: chunked
Open service 3.33.161.45:443 · www.ir.gcc.com
2025-12-22 05:09
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"22a2499aa48d558f41b6ce4b22fbf2ff"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=kJJSXoRlpk1Fxp5ZRDqLiraquamzMqBJSo66pINzprU%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766380152"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=kJJSXoRlpk1Fxp5ZRDqLiraquamzMqBJSo66pINzprU%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766380152"
Server: Heroku
Set-Cookie: _cemento_session=OU5heTc0cG9wQW5PRnZ0d3J4aDY1MndkeEtiU09NM2l4N3lNcHhwQktPTUZQSlFBaWJ4bEpFY0pRS3NKUzJMdWNaRjF5Rjh4cFlwekFKM3JpNHZEQjNpUE0vdy9mWXc4aTN6ck9POXVnRnRxVi8rdWo2WHh1VG9OTFYwbnFZYXFsV1ltNXR4dE55Q1VPSVVoRjJPTEVhejN0NE1GdVN0aUdnZHBSSUt4Wk1NPS0tRG9IQVpPMDdTNURLQ20zQk1maG1rQT09--bf17e5c2b9dfc89db4d5539b3c911d1806a77771; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 1b1a139e-45aa-6b27-b29f-e7839deda414
X-Runtime: 0.009366
X-Xss-Protection: 1; mode=block
Date: Mon, 22 Dec 2025 05:09:12 GMT
Connection: close
Transfer-Encoding: chunked
Open service 35.71.150.51:443 · ir.gcc.com
2025-12-20 08:12
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"bfe19b6be5750ba15042cf0a6c820b67"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=d9V32Hun8f9H3kDYtqshFc113OkeMnEQTlr88PJgdH8%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766218359"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=d9V32Hun8f9H3kDYtqshFc113OkeMnEQTlr88PJgdH8%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766218359"
Server: Heroku
Set-Cookie: _cemento_session=RE81empHY0xpWnZ0TGhQQlEvS00yVVY2dXZGTXRTdWhhSmxOR29BQ2dGYUNLS2RxcWpOaXhjMUp3OXdKY3dlMWcyVExUbWQ5cGRuVm5iNlRuUHJESDdpUDdnNGp0NThsZUtMVWpQdUlGTW00aWRvVU1OQzI3Z1dXdU9STmlBOHE4eXQxdlQ0VEFKV3MvNDUzOS8xMEd4TUtKYjZvdkNCRG83bHIzNGpGTjR3PS0tTW82MWVldUROMi9mOXBPblVEcmNKZz09--a12e4b9f69d10c03d368a5a6907665fe5ccb62ad; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 341895ca-e685-f49b-68fd-d65132a0237b
X-Runtime: 0.010042
X-Xss-Protection: 1; mode=block
Date: Sat, 20 Dec 2025 08:12:39 GMT
Connection: close
Transfer-Encoding: chunked
Open service 3.33.161.45:443 · www.ir.gcc.com
2025-12-20 05:09
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Type: text/html; charset=utf-8
Etag: W/"f3de0b3b1297c3ce2e55feeeb043a775"
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=1452Kn6TKkpHlAAMZ4lYK5PoK%2FWWOWIr3u73GpJTihI%3D\u0026sid=67ff5de4-ad2b-4112-9289-cf96be89efed\u0026ts=1766207359"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=1452Kn6TKkpHlAAMZ4lYK5PoK%2FWWOWIr3u73GpJTihI%3D&sid=67ff5de4-ad2b-4112-9289-cf96be89efed&ts=1766207359"
Server: Heroku
Set-Cookie: _cemento_session=bUJkakFJZ25mdnNOam1SYWp2WmZ6eCtHbzRGSUo1RlRiMVRaRStVR0VBRi90UkZqVGpOam9ta3J0NzhjQ0xCb1ROTFRIZVZBM1pXKzZaSmNiRlExelhqdldqQXhkeWVackNvSSt3dFA1K2NTYUlmRXViVEZyRFRlWVc1UmxSMHBabFlwaURqNmQrbjBQc0hNUUt2NHdwK0FqMCtYMHBxODA4NHNHWHdTQ09rPS0tZE5rZWV1b2kwUzk3RFBiM045Z0svUT09--52362ac438206ba56b48756da45996c89203ee65; path=/; secure; HttpOnly
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 6ba3ea05-ba45-b72d-def0-285a6726b00a
X-Runtime: 0.013354
X-Xss-Protection: 1; mode=block
Date: Sat, 20 Dec 2025 05:09:19 GMT
Connection: close
Transfer-Encoding: chunked