server: |
nginx |
date: |
Tue, 01 Oct 2024 04:28:01 GMT |
content-type: |
text/html;charset=UTF-8 |
content-security-policy-report-only: |
default-src 'self'; script-src 'report-sample' 'self' 'strict-dynamic' 'unsafe-hashes' 'unsafe-eval' *.adis.ws adis.ws *.arc.epoq.de arc.epoq.de *.baqend.com baqend.com *.carhartt-wip.app.baqend.com carhartt-wip.app.baqend.com *.carhartt-wip.com carhartt-wip.com *.cookiebot.com cookiebot.com *.epoq-systems.de epoq-systems.de *.fitanalytics.com fitanalytics.com *.hotjar.com hotjar.com *.hotjar.io hotjar.io *.services-carhartt-wip.com services-carhartt-wip.com *.epoq.de epoq.de *.googleadservices.com googleadservices.com *.google.com google.com *.google.de google.de *.google.pl google.pl *.google-analytics.com google-analytics.com *.googletagmanager.com googletagmanager.com *.googleapis.com googleapis.com *.siteimproveanalytics.com siteimproveanalytics.com *.tagmanager.google.com tagmanager.google.com *.visualwebsiteoptimizer.com visualwebsiteoptimizer.com *.tiktok.com tiktok.com *.webgains.io webgains.io *.bing.com bing.com *.facebook.com facebook.com *.facebook.net facebook.net *.cptrack.de cptrack.de *.gstatic.com gstatic.com *.pay1.de pay1.de *.zenloop.com zenloop.com *.klarna.com klarna.com *.playground.klarna.com js.playground.klarna.com *.nlservice.carhartt-wip.com:* nlservice.carhartt-wip.com:* *.analytics.google.com analytics.google.com *.bing.com bing.com 'sha256-lTqPe76t8Osd8kmEz4T3znoUYgDHYdYw1X3ijHh6UoA=' 'sha256-fLjj98g6W3M84sRN67SPyI0+GPkbFL1ERF9F6b5X900=' 'nonce-d571034d6c54305e84a40f54c3867e6c' ; style-src 'self' 'unsafe-inline' *.epoq-systems.de epoq-systems.de *.epoq.de epoq.de *.carhartt-wip.com carhartt-wip.com tagmanager.google.com fonts.googleapis.com; object-src 'none'; base-uri 'self'; connect-src 'self' *.analytics.google.com analytics.google.com *.baqend.com baqend.com *.cookiebot.com cookiebot.com *.carhartt-wip.com carhartt-wip.com *.carhartt-wip.app.baqend.com carhartt-wip.app.baqend.com *.fitanalytics.com fitanalytics.com *.googleapis.com googleapis.com *.google.com google.com *.google.de google.de *.google.pl google.pl *.googletagmanager.com googletagmanager.com *.google-analytics.com google-analytics.com *.hotjar.io hotjar.io *.pay1.de pay1.de *.pinterest.com pinterest.com *.scarabresearch.com scarabresearch.com *.services-carhartt-wip.com services-carhartt-wip.com *.tiktok.com tiktok.com *.visualwebsiteoptimizer.com visualwebsiteoptimizer.com *.webgains.io webgains.io *.zenloop.com zenloop.com *.econda-monitor.de econda-monitor.de carharrt-storefinder-api.herokuapp.com storefinder-test.herokuapp.com *.nlservice.carhartt-wip.com:* nlservice.carhartt-wip.com:* *.epoq.de epoq.de *.googlesyndication.com *.g.doubleclick.net; font-src 'self' data: *.gstatic.com gstatic.com *.zenloop.com zenloop.com *.googleapis.com googleapis.com; frame-src 'self' *.cookiebot.com cookiebot.com *.pinterest.com pinterest.com *.google.com google.com *.carhartt-wip.com carhartt-wip.com *.pay1.de pay1.de *.soundcloud.com soundcloud.com *.klarna.com klarna.com *.playground.klarna.com js.playground.klarna.com *.doubleclick.net; img-src 'self' data: *.adis.ws adis.ws *.visualwebsiteoptimizer.com visualwebsiteoptimizer.com *.google-analytics.com google-analytics.com *.gstatic.com gstatic.com *.googletagmanager.com googletagmanager.com *.siteimproveanalytics.com siteimproveanalytics.com *.siteimproveanalytics.io siteimproveanalytics.io *.fitanalytics.com fitanalytics.com *.zenloop.com zenloop.com *.bing.com bing.com *.g.doubleclick.net doubleclick.net *.facebook.com facebook.com *.google.com google.com *.carhartt-wip.com carhartt-wip.com *.cdn.media.amplience.net cdn.media.amplience.net *.googleapis.com googleapis.com *.mktgcdn.com mktgcdn.com; manifest-src 'self'; media-src 'self' *.amplience.net amplience.net *.carhartt-wip.com carhartt-wip.com *.soundcloud.com soundcloud.com *.cdn.media.amplience.net cdn.media.amplience.net; worker-src 'none'; |
permissions-policy: |
microphone=(),camera=() |
referrer-policy: |
same-origin |
x-content-type-options: |
nosniff |
strict-transport-security: |
max-age=31536000; includeSubDomains, max-age=3600000; includeSubDomains |
vary: |
Origin |
set-cookie: |
_visitor=c5be5cdf-793b-473f-9849-6920651b82d3; Expires=Thu, 01-Oct-2026 04:28:01 GMT; Path=/site,JSESSIONID=59C8EAD62B02021538714FC8315DAFB6; Path=/site; HttpOnly,shop_cookie="{\"country\":\"NL\",\"language\":\"en\",\"ipChecked\":\"true\"}"; Version=1; Max-Age=2592000; Expires=Thu, 31-Oct-2024 04:28:01 GMT; Path=/; Secure,affiliate_cookie=""; Expires=Fri, 29-Sep-2034 04:28:01 GMT; Path=/; Secure,remember_me=""; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ |
cache-control: |
no-cache, no-store, max-age=0, must-revalidate |
pragma: |
no-cache |
expires: |
0 |
x-xss-protection: |
1; mode=block |
x-frame-options: |
DENY |
x-served-by: |
site-nginx-carhartt-proxy-6c67cf755-784cd |
content-security-policy: |
frame-ancestors 'self' http://localhost:* |
via: |
1.1 google |
alt-svc: |
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000 |
connection: |
close |
transfer-encoding: |
chunked |