HTTP/1.1 200 Date: Wed, 30 Apr 2025 08:48:50 GMT Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN ETag: "0" Access-Control-Allow-Origin: * Content-Security-Policy: block-all-mixed-content; default-src *.sofia.bg 'unsafe-inline' 'self' www.youtube.com; script-src *.sofia.bg 'unsafe-inline' 'unsafe-eval' 'self' *.google.com; object-src 'self' *.sofia.bg; img-src *.sofia.bg 'self' data: Permissions-Policy: camera=('self'), microphone=('self'), geolocation=('self') Referrer-Policy: strict-origin Via: 1.1 www.sofia.bg (Access Gateway-ag-FA74D94CC2FA418B-324294381) Set-Cookie: JSESSIONID=DF7BB8311D3D3DE1DE4963AAB831D205; Path=/; Secure; HttpOnly; SameSite=Strict; Secure Set-Cookie: ZNPCQ003-31353800=5d0298fd; Path=/; Domain=sofia.bg; Secure; HttpOnly; SameSite=Strict; Secure Content-Length: 0 Set-Cookie: TS016a1973=01854c33b9d9472a21fd9e904faff88d76081f41c58305914793526993a8c496104830959392eab4b1a0b3140737bf6b543d0a99cf0cedba8156da1d13fd98fec70a3755fd; Path=/; Set-Cookie: TS0178b9fe=01854c33b952cba854756b66f3d73ca038609f727d8305914793526993a8c49610483095936f852b9c55f23b3e3792c8282f6c2bce5e76abd7e0301ea66ed5e4025abeebaf; path=/; domain=sofia.bg