HTTP/1.1 200 OK
Date: Sat, 12 Apr 2025 04:07:42 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 2073
Connection: keep-alive
Server: nginx
Vary: Accept-Encoding
vary: Cookie, Origin
x-frame-options: SAMEORIGIN
referrer-policy: strict-origin
x-content-type-options: nosniff
cross-origin-opener-policy: same-origin
content-security-policy-report-only: script-src-attr 'self' 'unsafe-inline' https://*.canvasmedical.com https://canvasmedical.com https://cdnjs.cloudflare.com https://checkout.stripe.com https://js.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://maxcdn.bootstrapcdn.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com; connect-src http://127.0.0.1:* https://*.canvasmedical.com https://sentry.canvasmedical.com wss://*.canvasmedical.com wss://127.0.0.1:* https://d31eck28xxyyiu.cloudfront.net https://esp.aptrinsic.com https://web-sdk.aptrinsic.com https://*.ingest.sentry.io https://*.ingest.us.sentry.io https://app.zushealth.com https://fqs.sandbox.zusapi.com https://fqs.zusapi.com https://app.sandbox.zushealth.com https://patient-history.sandbox.zusapi.com https://logs.browser-intake-datadoghq.com https://rum.browser-intake-datadoghq.com https://unleash-proxy-prod.zusapi.com https://unleash-proxy.zusapi.com; style-src-attr 'self' 'unsafe-inline' blob: https://netdna.bootstrapcdn.com http://netdna.bootstrapcdn.com https://*.canvasmedical.com https://canvasmedical.com https://cdnjs.cloudflare.com https://checkout.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com https://s3-us-west-2.amazonaws.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com; style-src-elem 'self' 'unsafe-inline' blob: https://netdna.bootstrapcdn.com http://netdna.bootstrapcdn.com https://*.canvasmedical.com https://canvasmedical.com https://cdnjs.cloudflare.com https://checkout.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com https://s3-us-west-2.amazonaws.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com; script-src 'self' 'unsafe-eval' https://cdnjs.cloudflare.com https://checkout.stripe.com https://js.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://maxcdn.bootstrapcdn.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com 'nonce-Y2pR/TGnqVlOzpAtdcU9HA=='; style-src 'self' 'unsafe-inline' blob: https://*.canvasmedical.com https://canvasmedical.com https://cdnjs.cloudflare.com https://checkout.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com https://s3-us-west-2.amazonaws.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com; default-src 'self' https://*.canvasmedical.com https://canvasmedical.com https://d31eck28xxyyiu.cloudfront.net; object-src 'self' https://canvas-client-media.s3.amazonaws.com https://*.canvasmedical.com https://canvasmedical.com; upgrade-insecure-requests; frame-ancestors 'self'; script-src-elem 'self' 'unsafe-inline' http://localhost:8001 https://*.canvasmedical.com https://canvasmedical.com https://*.stripe.com https://cdnjs.cloudflare.com https://checkout.stripe.com https://js.stripe.com https://code.jquery.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://maxcdn.bootstrapcdn.com https://cdn.jsdelivr.net https://web-sdk.aptrinsic.com https://canvas-storages.s3.us-west-2.amazonaws.com; font-src 'self' data: https://cdnjs.cloudflare.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://fonts.googleapis.com https://fonts.gstatic.com; block-all-mixed-content; img-src 'self' data: https: https://*.canvasmedical.com https://127.0.0.1:* https://canvas-client-media.s3.amazonaws.com https://canvas-medical.s3-us-west-2.amazonaws.com https://canvas-medical.s3.us-west-2.amazonaws.com https://canvas-storages.s3.amazonaws.com https://canvasmedical.com https://cdnjs.cloudflare.com https://d31eck28xxyyiu.cloudfront.net https://d3hn0m4rbsz438.cloudfront.net https://q.stripe.com https://s3-us-west-2.amazonaws.com; frame-src 'self' https://*.canvasmedical.com https://canvas-client-media.s3.amazonaws.com https://js.stripe.com https://d31eck28xxyyiu.cloudfront.net https://zap.zushealth.com https://zap.sandbox.zushealth.com; report-uri https://canvas.report-uri.com/r/d/csp/enforce
set-cookie: csrftoken=i2D1JdPNlDLOasclpuhxSqRbHhdqiaMv; expires=Sat, 11 Apr 2026 04:07:42 GMT; Max-Age=31449600; Path=/; SameSite=Lax; Secure
Strict-Transport-Security: max-age=31536000
SSL Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
f0:4d:d1:a7:ce:37:a8:19:b6:5a:a3:be:3b:38:bf:6b
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
Validity
Not Before: Aug 14 00:00:00 2024 GMT
Not After : Sep 14 23:59:59 2025 GMT
Subject: CN=*.canvasmedical.com
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ad:b9:83:27:14:ed:d7:70:cb:7d:d1:dd:97:0a:
c2:1b:d5:db:e2:91:60:c8:e4:3d:2b:1a:a5:10:d5:
40:17:5e:be:7a:50:39:3b:28:94:ad:94:ff:e7:2a:
68:62:e3:4f:f0:6a:0d:54:41:6a:be:ca:5d:62:28:
28:69:00:7c:76:f0:da:f4:8e:34:c5:5a:14:af:b0:
d0:2c:8f:c1:f4:41:8b:c5:f0:d1:0f:61:31:a5:c8:
20:be:b2:ac:71:ff:3e:9d:6f:c3:7c:da:fa:a4:8e:
18:34:ae:e0:82:65:6f:a2:c6:6c:d1:5b:0e:63:40:
09:57:39:24:c8:d7:78:09:df:55:bc:31:cd:45:8c:
77:55:29:b7:f7:bd:c1:d2:fb:f8:2f:7b:bf:f3:1d:
79:fb:34:c5:e0:b2:30:17:2c:59:e9:db:36:4c:fb:
7a:7c:f8:0b:33:dc:ba:fa:40:e3:95:d6:56:f2:7a:
2a:de:96:0f:d9:82:d0:95:a9:61:3c:e5:f5:f0:87:
37:89:d7:07:bd:76:45:00:34:6a:2b:f3:0b:dc:5e:
9d:61:a6:4c:73:d9:7c:5e:fd:f3:53:48:f3:85:f4:
f8:56:03:22:4d:7c:6d:eb:be:a6:ef:53:0d:1f:dc:
ce:b5:33:41:b0:e1:d2:f8:d3:68:35:ad:6e:85:a7:
a1:97
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Authority Key Identifier:
8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1
X509v3 Subject Key Identifier:
26:E5:3D:9D:49:B0:3A:41:42:59:F9:F7:A3:1A:CF:16:56:A7:92:26
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage:
TLS Web Server Authentication, TLS Web Client Authentication
X509v3 Certificate Policies:
Policy: 1.3.6.1.4.1.6449.1.2.2.7
CPS: https://sectigo.com/CPS
Policy: 2.23.140.1.2.1
Authority Information Access:
CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
OCSP - URI:http://ocsp.sectigo.com
X509v3 Subject Alternative Name:
DNS:*.canvasmedical.com, DNS:canvasmedical.com
CT Precertificate SCTs:
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8:
3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A
Timestamp : Aug 14 17:39:21.591 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:43:82:A6:7F:06:5A:5A:D2:7F:E8:CC:5C:
D8:24:D5:9A:26:F5:75:6A:40:D1:CE:4E:79:9E:A9:7E:
CA:E2:B9:CD:02:20:67:78:CD:63:A0:E2:88:F6:10:EF:
48:7A:61:A3:F9:6D:8F:11:D3:22:5C:23:4C:EE:D0:D0:
F8:72:D9:22:95:D9
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC:
47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34
Timestamp : Aug 14 17:39:21.554 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:46:02:21:00:AB:34:21:25:58:82:F3:25:54:60:58:
29:4E:6D:43:69:5B:7F:64:17:36:72:A3:41:AF:DD:D5:
70:F7:B5:58:58:02:21:00:DE:63:91:76:F5:E9:6E:35:
8A:2B:7F:AF:94:F0:71:8C:DC:0C:C9:4F:61:C7:A7:8C:
A1:69:79:1C:49:1D:1F:74
Signed Certificate Timestamp:
Version : v1 (0x0)
Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13:
F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A
Timestamp : Aug 14 17:39:21.554 2024 GMT
Extensions: none
Signature : ecdsa-with-SHA256
30:44:02:20:50:49:5B:34:AD:0C:79:28:45:CC:36:75:
C7:56:2A:B1:67:53:C3:20:27:BB:5A:C9:89:10:5F:18:
8B:58:19:71:02:20:28:5D:64:D7:B5:53:11:9F:3B:62:
DD:D9:85:60:13:02:2D:1A:27:32:7E:F2:16:53:75:01:
68:2E:E8:3E:3B:FC
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
ca:fd:ec:7a:47:25:1e:95:74:e7:d3:42:08:0c:56:9e:c8:ae:
0a:d9:f0:8d:3f:90:e7:3c:34:6a:c7:fd:53:ac:07:7c:5f:68:
04:01:cb:74:e6:de:13:de:4f:27:9f:22:23:7e:48:ed:d8:fc:
eb:c6:b8:ee:4d:4b:ec:07:a8:fa:19:95:75:ba:23:d0:22:37:
7a:87:25:dc:b7:a1:a2:9c:d2:3f:04:f6:48:5e:4e:79:06:62:
02:9c:b5:37:90:f0:5b:6d:66:be:0e:13:38:7a:dd:66:44:dd:
33:30:42:b4:4f:6e:55:d0:55:76:2b:85:10:7b:8f:15:6a:03:
20:28:39:12:6b:83:89:bc:47:93:67:4e:7d:d8:ff:4f:43:4c:
f2:69:a5:c0:60:f8:71:d6:88:b8:8b:70:58:62:25:71:f7:9a:
5c:25:2f:43:24:fb:ea:12:92:ca:0f:7e:d9:29:55:e6:af:2c:
03:26:44:fd:82:10:2d:fe:3d:bb:78:37:66:1a:2c:f0:89:31:
46:2b:38:6f:e4:5e:67:f1:83:ec:e3:cb:71:82:a7:dc:be:4d:
62:d4:d6:e9:b9:b6:9d:c6:c5:03:58:e8:05:5e:ef:d7:d9:35:
c2:c2:c3:28:30:c2:e6:31:d9:87:37:5b:71:ab:c7:33:a1:d0:
b7:7f:64:3d