HTTP/1.1 200 OK Date: Sun, 19 Jul 2026 13:02:52 GMT Server: Apache Strict-Transport-Security: max-age=31536000; includeSubDomains; preload Access-Control-Allow-Methods: PUT, GET, POST, DELETE, OPTIONS Access-Control-Max-Age: 1000 Access-Control-Allow-Headers: X-Requested-With, Content-Type, Origin, Authorization, accept, client-security-token, X-CSRF-Token Last-Modified: Fri, 10 Jul 2026 07:31:15 GMT ETag: "c2f001eb4c3e3d43e0bbcffd1edcb78f858b0ad3" Cache-Control: no-cache, no-store, must-revalidate Pragma: no-cache Content-Encoding: none Content-Length: 59057 Connection: Close X-Content-Type-Options: nosniff Content-Security-Policy: frame-ancestors 'self' https://www.intranet.ufz.de ; Access-Control-Allow-Origin: https://finder.ufz.de Content-Type: text/html; charset=UTF-8