date: |
Tue, 01 Oct 2024 06:00:39 GMT |
content-type: |
text/html; charset=utf-8 |
transfer-encoding: |
chunked |
connection: |
close |
link: |
<https://contents.mediadecathlon.com>; rel=preconnect, </client/style/vtmn-tailwind.f007f67aaaf490c44fc9.css>; rel=preload; as=style, </client/style/vtmn-style.88921bae214f13da8115.css>; rel=preload; as=style, </client/style/vtmn-new-visual-identity.baf19d8b0ed007285903.css>; rel=preload; as=style, </client/style/style.7f36042c4110b6b5cffb.css>; rel=preload; as=style, </client/app/client.4ba9d166ed3386cf9739.js>; rel=preload; as=script |
vary: |
Accept-Encoding |
referrer-policy: |
no-referrer-when-downgrade |
x-frame-options: |
SAMEORIGIN |
x-xss-protection: |
1; mode=block |
x-content-type-options: |
nosniff |
x-permitted-cross-domain-policies: |
master-only |
set-cookie: |
NFS_USER_ID=a930c32c-b46d-4950-851a-933c1ddba959; Max-Age=15724799; Expires=Tue, 01 Apr 2025 06:00:38 GMT; Path=/; Secure,PLAY_LANG=de; Path=/,ACTIVE_USER=y;Max-Age=900;HttpOnly;Secure;Path=/,__cf_bm=sj3e0lhf61ldB._NDRw9g5WIPmvLlRnBg5Zqe8pDj84-1727762439-1.0.1.1-rSRDt11gEMuqYjMXnjCulcAxP50.7VnJI36scg.95CUcCVbof78PFbBL7E_Dhxafu_OQOUsC4imQuxJUWbCNcg; path=/; expires=Tue, 01-Oct-24 06:30:39 GMT; domain=.www.decathlon.de; HttpOnly; Secure; SameSite=None,_cfuvid=XmcldpINgdMwibDcDoADDHVDjPXI1PCaxKiOU4XaHA0-1727762439136-0.0.1.1-604800000; path=/; domain=.www.decathlon.de; HttpOnly; Secure; SameSite=None |
content-security-policy: |
block-all-mixed-content ;upgrade-insecure-requests ;default-src 'self' *.criteo.com *.criteo.net adventori.com checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com *.abtasty.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' *.abtasty.com *.y-track.com *.google-analytics.com *.googletagmanager.com www.googletagmanager.com vjs.zencdn.net www.google.com/recaptcha/ www.gstatic.com/recaptcha/ ui.onepay.decathlon.net *.paypal.com *.braintreegateway.com *.brightcove.net *.trylive.com *.googleapis.com sdk.privacy-center.org sdk.woosmap.com www.booxi.eu appmobile-bridge-js.s3-eu-west-1.amazonaws.com *.woosmap.com ui.onepay-qualification.decathlon.io cdn.tagcommander.com *.facebook.net *.dynatrace.com platform.commandersact.com *.commander1.com *.criteo.com *.criteo.net *.adnxs.com adventori.com www.googleadservices.com bat.bing.com *.salecycle.com *.doubleclick.net *.hotjar.com redirect3536.tagcommander.com *.oppwa.com oppwa.com checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com *.klarnacdn.net qanda.decathlon.com wurfl.io *.commandersact.com translate.google.com nxtck.com onepay-ui.decathlon.net *.contentsquare.net *.contentsquare.com www.youtube.com wss://*.hotjar.com *.loadbee.com *.decathlon.net via.batch.com *.dynamicyield.com *.klarnaservices.com *.onepay-v2-commons-prod-0ywm.decathlon.io screencapture.kampyle.com screencapture-cdn.kampyle.com resources.digital-cloud.medallia.eu sbt-prod.kampyle.com nebula-cdn.kampyle.com udc-neb.kampyle.com md-scp.kampyle.com resources.digital-cloud-west.medallia.com pay.google.com/gp/p/js/pay.js applepay.cdn-apple.com rum.browser-intake-datadoghq.eu session-replay.browser-intake-datadoghq.eu logs.browser-intake-datadoghq.eu logs.browser-intake-datadoghq.com browser-intake-datadoghq.eu safesizepublic.ucscentral.com google.com/pay creativecdn.com *.creativecdn.com second-life-xps.secondlifebff-prod-bkpr.decathlon.io *.dotomi.com cdn.amplitude.com api.amplitude.com api2.amplitude.com pay.datatrans.com view.publitas.com scripts.publitas.com js.stripe.com *.js.stripe.com *.adition.com *.amazonaws.com *.baqend.com *.booxi.com *.booxi.eu *.braintree-api.com *.cloudfront.net *.cube-net.pub *.decathlon.de *.decathlon.io *.excentos.com *.go-mpulse.net *.google.de *.googleadservices.com *.intelliad.de *.online-metrix.net *.pinimg.com *.pinterest.com *.privacy-center.org *.tagcommander.com *.trustedshops.com *.userlike.com adservice.google.com api.usabilla.com cdn.conative.de connect.facebook.net d6tizftlrpuof.cloudfront.net fast.smarketer.de/ fonts.gstatic.com googleads.g.doubleclick.net gum.criteo.com ib.adnxs.com js-cdn.dynatrace.com maps.gstatic.com s3-eu-west-1.amazonaws.com ssl.hurra.com stage.excentos.com staticxx.facebook.com storage.googleapis.com tpc.googlesyndication.com ui.onepay.decathlon.io usabilla.com/ w.usabilla.com widget.fintanalytics.com widgets.trustedshops.com www.awin1.com www.dwin1.com www.facebook.com www.google-analytics.com www.google.at www.google.com www.google.fr www.gstatic.com c.searchhub.io euob.roundprinceweb.com obseu.roundprinceweb.com userlike-cdn-umm.b-cdn.net widget.simplybook.pro rts.persado.com cdn.persa.do *.squarelovin.com squarelovin.com pagead2.googlesyndication.com;connect-src 'self' *.google-analytics.com *.analytics.google.com *.abtasty.com *.y-track.com *.woosmap.com *.brightcove.com *.brightcovecdn.com *.paypal.com *.braintree-api.com *.braintreegateway.com *.decathlon.net *.decathlon.com *.booxi.eu api.privacy-center.org www.facebook.com *.doubleclick.net bat.bing.com api.booxi.eu bf97725pbp.bf.dynatrace.com *.hotjar.com *.hotjar.io *.oppwa.com oppwa.com *.brightcove.net checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com *.klarnacdn.net qanda.decathlon.com booxi-api-be.appspot.com booxi-api.appspot.com sync.commander1.com *.boltdns.net *.akamaihd.net *.contentsquare.net tracking-api-4lasu2nlcq-ew.a.run.app *.googleapis.com wss://*.hotjar.com www.googletagmanager.com via.batch.com ws.batch.com *.dynamicyield.com *.dynamicyield.eu *.klarnaservices.com *.onepay-v2-commons-prod-0ywm.decathlon.io resources.digital-cloud.medallia.eu ubt-lb.digital-cloud.medallia.eu sbt-prod.kampyle.com nebula-cdn.kampyle.com udc-neb.kampyle.com md-scp.kampyle.com resources.digital-cloud-west.medallia.com www.google.com/pay signin.easyence.tech google.com/pay pay.google.com *.creativecdn.com rum.browser-intake-datadoghq.eu session-replay.browser-intake-datadoghq.eu logs.browser-intake-datadoghq.eu logs.browser-intake-datadoghq.com browser-intake-datadoghq.eu second-life-xps.secondlifebff-prod-bkpr.decathlon.io cdn.amplitude.com api.amplitude.com api2.amplitude.com api.stripe.com *.akafms.net *.akstat.io *.amazonaws.com *.baqend.com *.booxi.com *.cloudfront.net *.decathlon.de *.decathlon.io *.dynatrace.com *.excentos.com *.facebook.net *.go-mpulse.net *.google.com *.google.de *.googleadservices.com *.intelliad.de *.mediadecathlon.com *.online-metrix.net *.paypalobjects.com *.pinimg.com *.pinterest.com *.privacy-center.org *.tagcommander.com *.trustedshops.com *.trylive.com *.usabilla.com *.userlike.com adventori.com api.decathlon.de api.trustbadge.etrusted.com api.trustedshops.com api.usabilla.com c.go-mpulse.net cdn.conative.de ce.lijit.com commander1.com connect.facebook.net content.decathlon.de contents.mediadecathlon.com ct.pinterest.com d6tizftlrpuof.cloudfront.net d6tizftlrpuof.cloudfront.net/ data.decathlon.de fast.smarketer.de/ fm.flashtalking.com gum.criteo.com ib.adnxs.com logging.trustbadge.com media.marktjagd.com p.crm4d.com player.vimeo.com s3-eu-west-1.amazonaws.com shops-si.trustedshops.com sofia.trustx.org spotlight.offerista.com ssl.hurra.com staticxx.facebook.com storage.googleapis.com sync.adotmob.com tpc.googlesyndication.com trustbadge.api.etrusted.com ui.onepay-qualification.decathlon.io ui.onepay.decathlon.io userlike-cdn-widgets.s3-eu-west-1.amazonaws.com visitor.omnitagjs.com w.usabilla.com widgets.trustedshops.com wurfl.io www.awin1.com www.dwin1.com www.google-analytics.com www.google.at www.google.co.uk www.google.com www.google.com.hk www.google.com.tr www.google.cz www.google.es www.google.fr www.google.hr www.google.pt www.googleadservices.com www.gstatic.com www.mediadecathlon.com www.youtube.com wss://umd.userlike.com fpc.decathlon.de saas.searchhub.io euob.roundprinceweb.com obseu.roundprinceweb.com pagead2.googlesyndication.com *.criteo.com *.criteo.net 'unsafe-inline' 'unsafe-eval' *.googletagmanager.com vjs.zencdn.net www.google.com/recaptcha/ www.gstatic.com/recaptcha/ ui.onepay.decathlon.net sdk.privacy-center.org sdk.woosmap.com www.booxi.eu appmobile-bridge-js.s3-eu-west-1.amazonaws.com cdn.tagcommander.com platform.commandersact.com *.commander1.com *.adnxs.com *.salecycle.com redirect3536.tagcommander.com *.commandersact.com translate.google.com nxtck.com onepay-ui.decathlon.net *.contentsquare.com *.loadbee.com screencapture.kampyle.com screencapture-cdn.kampyle.com pay.google.com/gp/p/js/pay.js applepay.cdn-apple.com safesizepublic.ucscentral.com creativecdn.com *.dotomi.com pay.datatrans.com view.publitas.com scripts.publitas.com js.stripe.com *.js.stripe.com *.adition.com *.cube-net.pub adservice.google.com fonts.gstatic.com googleads.g.doubleclick.net js-cdn.dynatrace.com maps.gstatic.com stage.excentos.com usabilla.com/ widget.fintanalytics.com c.searchhub.io userlike-cdn-umm.b-cdn.net widget.simplybook.pro rts.persado.com cdn.persa.do *.squarelovin.com squarelovin.com data: blob: *.cube-net.org prod-wt.aws.y-track.com manager.tagcommander.com www.google.it www.google.nl www.google.be www.google.pl *.gstatic.com *.atdmt.com tag.goldenbees.fr *.crm4d.com *.adsrvr.org voucher.decathlon.net apigift.decathlon.com site.booxi.com icons.batch.com screencaptue-cdn.kampyle.com cdn-workshop-pop.decathlon.net onepay-widget.decathlon.net bcboltbde696aa-a.akamaihd.net p.searchhub.io cdn.speedsize.com userlike-cdn-operators.userlike.com *.imagekit.io fonts.googleapis.com storage.googleapis.com/sl-front-xp-bucket-4v-tmoq/account/ storage.googleapis.com/sphere-assets-prod-71-hbfe/ paypalobjects.com players.brightcove.net chat.userlike.com secure.brightcove.com *.youtube.com saas.trylive.com/ site.booxi.eu/ reviews.decathlon.com c.paypal.com checkout.paypal.com www.paypal.com reviews-collect-eu.satisphere.decathlon.net www.pinterest.com hooks.stripe.com decathlon-de-de--tst2.custhelp.com kundenservice.decathlon.de www.pinterest.de decathlon.simplybook.pro https://widget.simplybook.pro;img-src 'self' data: blob: *.decathlon.com *.cube-net.org *.cube-net.pub contents.mediadecathlon.com *.google-analytics.com *.googletagmanager.com *.brightcove.com *.brightcove.net *.brightcovecdn.com *.paypal.com prod-wt.aws.y-track.com manager.tagcommander.com *.googleapis.com *.abtasty.com *.woosmap.com www.facebook.com www.google.com www.google.es www.google.fr www.google.it www.google.nl www.google.be www.google.pl *.doubleclick.net bat.bing.com *.gstatic.com sync.commander1.com *.atdmt.com tag.goldenbees.fr *.crm4d.com *.adsrvr.org *.adnxs.com sdk.privacy-center.org checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com *.klarnacdn.net voucher.decathlon.net apigift.decathlon.com site.booxi.com www.mediadecathlon.com *.boltdns.net *.mediadecathlon.com *.contentsquare.net *.googleadservices.com adservice.google.com wss://*.hotjar.com via.batch.com ws.batch.com icons.batch.com *.onepay-v2-commons-prod-0ywm.decathlon.io screencaptue-cdn.kampyle.com resources.digital-cloud.medallia.eu udc-neb.kampyle.com nebula-cdn.kampyle.com resources.digital-cloud-west.medallia.com cdn-workshop-pop.decathlon.net *.dotomi.com pay.datatrans.com onepay-widget.decathlon.net *.dynamicyield.com *.klarnaservices.com bcboltbde696aa-a.akamaihd.net 'unsafe-eval' 'unsafe-inline' *.amazonaws.com *.baqend.com *.booxi.com *.booxi.eu *.braintree-api.com *.braintreegateway.com *.decathlon.de *.excentos.com *.go-mpulse.net *.google.de *.online-metrix.net *.oppwa.com *.pinimg.com *.pinterest.com *.y-track.com api.usabilla.com ce.lijit.com connect.facebook.net d6tizftlrpuof.cloudfront.net fm.flashtalking.com fonts.gstatic.com googleads.g.doubleclick.net maps.gstatic.com onepay-ui.decathlon.net oppwa.com p.crm4d.com s3-eu-west-1.amazonaws.com sofia.trustx.org ssl.hurra.com staticxx.facebook.com sync.adotmob.com tpc.googlesyndication.com ui.onepay.decathlon.io visitor.omnitagjs.com w.usabilla.com widgets.trustedshops.com www.awin1.com www.dwin1.com www.google.at www.google.co.uk www.google.com.hk www.google.com.tr www.google.cz www.google.hr www.google.pt www.googletagmanager.com www.gstatic.com p.searchhub.io cdn.speedsize.com euob.roundprinceweb.com obseu.roundprinceweb.com userlike-cdn-umm.b-cdn.net userlike-cdn-operators.userlike.com rts.persado.com cdn.persa.do *.squarelovin.com squarelovin.com *.imagekit.io;style-src 'self' 'unsafe-inline' www.booxi.eu fonts.googleapis.com *.decathlon.com *.oppwa.com oppwa.com checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com *.abtasty.com *.googletagmanager.com *.googleapis.com *.gstatic.com *.mediadecathlon.com wss://*.hotjar.com scripts.publitas.com *.klarnacdn.net *.onepay-v2-commons-prod-0ywm.decathlon.io resources.digital-cloud.medallia.eu screencaptue-cdn.kampyle.com nebula-cdn.kampyle.com md-scp.kampyle.com resources.digital-cloud-west.medallia.com second-life-xps.secondlifebff-prod-bkpr.decathlon.io storage.googleapis.com/sl-front-xp-bucket-4v-tmoq/account/ storage.googleapis.com/sphere-assets-prod-71-hbfe/ onepay-widget.decathlon.net pay.datatrans.com *.dynamicyield.com *.dynamicyield.eu *.excentos.com *.google.de *.googleadservices.com *.usabilla.com d6tizftlrpuof.cloudfront.net *.squarelovin.com squarelovin.com;font-src 'self' data: *.decathlon.com fonts.gstatic.com *.oppwa.com oppwa.com *.abtasty.com qanda.decathlon.com *.googleapis.com *.gstatic.com *.klarnacdn.net *.onepay-v2-commons-prod-0ywm.decathlon.io resources.digital-cloud.medallia.eu nebula-cdn.kampyle.com resources.digital-cloud-west.medallia.com cdn-workshop-pop.decathlon.net second-life-xps.secondlifebff-prod-bkpr.decathlon.io *.dynamicyield.com *.dynamicyield.eu *.baqend.com *.brightcove.net *.cloudfront.net *.decathlon.de *.excentos.com *.google.de *.googleadservices.com *.paypalobjects.com *.trustedshops.com *.usabilla.com media.marktjagd.com paypalobjects.com players.brightcove.net spotlight.offerista.com stage.excentos.com widget.fintanalytics.com saas.searchhub.io;object-src view.publitas.com;base-uri 'self' *.decathlon.de euob.roundprinceweb.com obseu.roundprinceweb.com;worker-src 'self' blob: via.batch.com 'unsafe-eval' 'unsafe-inline' *.decathlon.de *.paypal.com *.userlike.com chat.userlike.com fm.flashtalking.com;media-src 'self' blob: secure.brightcove.com *.brightcove.com *.brightcove.net *.boltdns.net *.mediadecathlon.com *.criteo.com bcboltbde696aa-a.akamaihd.net *.akafms.net *.akamaihd.net *.decathlon.de *.google.de *.pinterest.com www.google-analytics.com rts.persado.com cdn.persa.do *.squarelovin.com squarelovin.com *.imagekit.io;frame-src 'self' *.youtube.com www.google.com/recaptcha/ saas.trylive.com/ site.booxi.eu/ reviews.decathlon.com www.facebook.com *.doubleclick.net *.atdmt.com c.paypal.com checkout.paypal.com www.paypal.com *.hotjar.com *.oppwa.com oppwa.com *.brightcove.net checkoutshopper-live.adyen.com checkoutshopper-test.adyen.com *.klarnaevt.com *.klarna.com *.klarnacdn.com qanda.decathlon.com reviews-collect-eu.satisphere.decathlon.net *.mediadecathlon.com view.publitas.com www.pinterest.com *.abtasty.com *.decathlon.net wss://*.hotjar.com screencapture.kampyle.com nebula-cdn.kampyle.com resources.digital-cloud.medallia.eu resources.digital-cloud-west.medallia.com pay.google.com safesizepublic.ucscentral.com *.klarnaservices.com creativecdn.com *.creativecdn.com pay.datatrans.com js.stripe.com *.js.stripe.com hooks.stripe.com *.cloudfront.net *.google.de *.googleadservices.com *.online-metrix.net *.usabilla.com d6tizftlrpuof.cloudfront.net decathlon-de-de--tst2.custhelp.com googleads.g.doubleclick.net kundenservice.decathlon.de player.vimeo.com ssl.hurra.com tpc.googlesyndication.com www.awin1.com www.dwin1.com www.pinterest.de *.paypal.com www.youtube.com euob.roundprinceweb.com obseu.roundprinceweb.com decathlon.simplybook.pro https://widget.simplybook.pro;frame-ancestors 'self'; |
cache-control: |
max-age=0, reload, no-cache, no-store, must-revalidate |
strict-transport-security: |
max-age=15768000; includeSubDomains; preload |
cf-cache-status: |
DYNAMIC |
server: |
cloudflare |
cf-ray: |
8cba3bca5a3f0e81-AMS |