HTTP/2 302
cache-control: private, no-store
content-encoding: gzip
content-security-policy: default-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; base-uri 'self'; form-action 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; frame-ancestors 'none'; img-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev secure.gravatar.com avatars.githubusercontent.com; object-src 'none'; script-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; style-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev
content-type: text/html; charset=utf-8
location: https://www.bestpractices.dev/en
nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
referrer-policy: no-referrer-when-downgrade
report-to: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=%2FgKwe4ldF%2FDOSasRx3nvi%2FQxvQ%2FTGUM668dNDX%2FlWIQ%3D\u0026sid=af571f24-03ee-46d1-9f90-ab9030c2c74c\u0026ts=1766770227"}],"max_age":3600}
reporting-endpoints: heroku-nel="https://nel.heroku.com/reports?s=%2FgKwe4ldF%2FDOSasRx3nvi%2FQxvQ%2FTGUM668dNDX%2FlWIQ%3D&sid=af571f24-03ee-46d1-9f90-ab9030c2c74c&ts=1766770227"
server: Heroku
via: 1.1 heroku-router, 1.1 varnish
x-content-type-options: nosniff
x-download-options: noopen
x-frame-options: DENY
x-permitted-cross-domain-policies: none
x-request-id: bc913b1a-f525-b799-0de6-520dd9ec41a3
x-runtime: 0.002866
x-xss-protection: 1; mode=block
accept-ranges: bytes
date: Fri, 26 Dec 2025 17:30:27 GMT
x-served-by: cache-bom-vanm7210093-BOM
x-cache: MISS
x-cache-hits: 0
x-timer: S1766770227.210294,VS0,VE692
vary: Accept-Encoding
strict-transport-security: max-age=300
content-length: 20
HTTP/2 200
cache-control: private, no-cache
content-encoding: gzip
content-security-policy: default-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; base-uri 'self'; form-action 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; frame-ancestors 'none'; img-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev secure.gravatar.com avatars.githubusercontent.com; object-src 'none'; script-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev; style-src 'self' www.bestpractices.dev.global.ssl.fastly.net bestpractices.coreinfrastructure.org.global.ssl.fastly.net bestpractices.coreinfrastructure.org www.bestpractices.dev
content-type: text/html; charset=utf-8
feature-policy: fullscreen 'none'; geolocation 'none'; midi 'none';notifications 'none'; push 'none'; sync-xhr 'none'; microphone 'none';camera 'none'; magnetometer 'none'; gyroscope 'none'; speaker 'none';vibrate 'none'; payment 'none'
nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
permissions-policy: fullscreen=(), geolocation=(), midi=(), notifications=(), push=(), sync-xhr=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), speaker=(), vibrate=(), payment=()
referrer-policy: no-referrer-when-downgrade
report-to: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=CjKXOS1XRFdyvXJKzwIFpmTK6ednDdyI7l3GGFo9Fzk%3D\u0026sid=af571f24-03ee-46d1-9f90-ab9030c2c74c\u0026ts=1766770228"}],"max_age":3600}
reporting-endpoints: heroku-nel="https://nel.heroku.com/reports?s=CjKXOS1XRFdyvXJKzwIFpmTK6ednDdyI7l3GGFo9Fzk%3D&sid=af571f24-03ee-46d1-9f90-ab9030c2c74c&ts=1766770228"
server: Heroku
set-cookie: _BadgeApp_session=amZTd3dESWtUM3lWTVAwUlBDUFlTNFNwb3Jta3piMG9POXFSK0cyc0tJc2hRcVpsWlZZRnNaVUk2RitYc3VuSnVPR3FWVml4TG9ZZVYyeUxUVWhUblFiZ0NvY1FxQlpPOGhpbHNiR2hsQitUL1I2VWtIcitWVjNYVzN1SVp3WG1DNFprSzJYc0tzWlQ3QWtsZHZGRXlRPT0tLWxzUHlDVTg2R293V00rOHJ6U0RtYWc9PQ%3D%3D--453ca5680277d2f9fe65ea58a7b987070ec3b88a; path=/; secure; httponly
via: 1.1 heroku-router, 1.1 varnish
x-content-type-options: nosniff
x-download-options: noopen
x-frame-options: DENY
x-permitted-cross-domain-policies: none
x-request-id: 12376423-2edc-f7d0-138e-a3a63a7ce97a
x-runtime: 0.004417
x-xss-protection: 1; mode=block
accept-ranges: bytes
date: Fri, 26 Dec 2025 17:30:28 GMT
x-served-by: cache-bom-vanm7210093-BOM
x-cache: MISS
x-cache-hits: 0
x-timer: S1766770228.915451,VS0,VE704
vary: Accept-Encoding
strict-transport-security: max-age=300
BadgeApp