HTTP/1.1 200 Date: Sat, 03 May 2025 19:26:54 GMT Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN ETag: "0" Access-Control-Allow-Origin: * Content-Security-Policy: block-all-mixed-content; default-src *.sofia.bg 'unsafe-inline' 'self' www.youtube.com; script-src *.sofia.bg 'unsafe-inline' 'unsafe-eval' 'self' *.google.com; object-src 'self' *.sofia.bg; img-src *.sofia.bg 'self' data: Permissions-Policy: camera=('self'), microphone=('self'), geolocation=('self') Referrer-Policy: strict-origin Via: 1.1 www.sofia.bg (Access Gateway-ag-FA74D94CC2FA418B-329366730) Set-Cookie: JSESSIONID=FA4E94B6D75BD6B7F830C98A761BF792; Path=/; Secure; HttpOnly; SameSite=Strict; Secure Set-Cookie: ZNPCQ003-31353800=5d0298fd; Path=/; Domain=sofia.bg; Secure; HttpOnly; SameSite=Strict; Secure Content-Length: 0 Set-Cookie: TS016a1973=01854c33b9461f83a1a211c47b5746565d5fba7e02b3135bd85135bad13b619989a1f796ab98001955aa36268f3f907ab68007cda108e783e66eb372502e1984cac01b92bfcd175c36a3ba59cf51c51d33ea333085881ef11dc5547c24d53c3ff1448a620d; Path=/; Set-Cookie: TS0178b9fe=01854c33b95c148c036d4049c2bd4fcaeb19e42092b3135bd85135bad13b619989a1f796ab98001955aa36268f3f907ab68007cda10bcc2afb7e72d238546a8a0d51244c2fb1ddc3bb6a2d40ec3e3340d76201692924b9ca73b2b0c60fd1317edc8968d7b4e967a56f313799e7a14a3e69db3d67f5; path=/; domain=sofia.bg