date: |
Wed, 02 Oct 2024 15:56:37 GMT |
server: |
Apache |
content-security-policy: |
default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' secure.pay1.de api.deepl.com api-free.deepl.com https://*.googleapis.com https://*.google.com https://*.gstatic.com t.adcell.com containertags.belboon.de containertags.belboon.com https://*.r.akipam.com https://*.r.jakuli.com https://*.r.lafamo.com https://*.r.niwepa.com https://*.r.powuta.com https://cdn.logico3c.com https://pix.hyj.mobi https://s.retargeted.co https://maytrics.marvellousmachine.net tr.fatmedia.io as.ad4m.at ad4m.at https://*.adform.net bsmartdata.com fatmedia.io ad.ad-srv.net lekkerads.nl marvellousmachine.net https://*.gsitrix.com mediards.com https://*.mediards.com pikkasrv.com ad.ad-srv.net https://*.redintelligence.net https://*.adform.net https://*.redintelligence.net https://*.gsitrix.com https://*.adc-srv.net https://*.ad-srv.net https://*.mediards.com a.twiago.com ad.doubleclick.net ad.yieldlab.net ad13.adfarm1.adition.com ad4m.at adscale.de apptracker.stream bsmartdata.com dsum-sec.casalemedia.com https://*.fatmedia.io lekkerads.nl marvellousmachine.net pikkasrv.com r.adserver01.de r.adserver01.de r.df-srv.de rtb-csync.smartadserver.com secure.adnxs.com simage2.pubmatic.com trc.taboola.com tr.mediards.de https://s.marvellousmachine.net https://trk.cytelligence.io/ https://sdk-set1.com/ bat.bing.com sync.targeting.unrulymedia.com sync.1rx.io static.criteo.net sslwidget.criteo.com dynamic.criteo.com connect.facebook.net www.facebook.com cm.g.doubleclick.net adservice.google.com googleads.g.doubleclick.net www.googleadservices.com www.googletagmanager.com https://*.google-analytics.com https://unpkg.com/web-vitals/dist/web-vitals.iife.js s.pinimg.com ct.pinterest.com api.sovendus.com *.adsrvr.org widgets.trustedshops.com integrations.etrusted.com https://static.hotjar.com https://script.hotjar.com 'unsafe-inline' https://cdnjs.cloudflare.com/ajax/libs/Chart.js/2.9.3/Chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-annotation/0.5.7/chartjs-plugin-annotation.min.js https://cdnjs.cloudflare.com/ajax/libs/jquery/3.5.1/jquery.min.js https://youtube.com https://www.youtube.com; connect-src 'self' https://eu1-search.doofinder.com api.deepl.com api-free.deepl.com pro.ip-api.com 'self' data: blob: https://*.googleapis.com https://*.google.com https://*.gstatic.com t.adcell.com https://tr.fatmedia.io https://api.retargeted.co bat.bing.com measurement-api.criteo.com www.econda-monitor.de stats.g.doubleclick.net https://www.google.de/ads/ https://*.google-analytics.com https://region1.analytics.google.com ct.pinterest.com https://www.pinterest.com https://*.sovendus.com api.trustbadge.etrusted.com trustbadge.api.etrusted.com api.trustedshops.com logging.trustbadge.com integrations.etrusted.com https://shops-si.trustedshops.com https://*.hotjar.com https://vc.hotjar.io https://content.hotjar.io https://events.hotjar.io https://surveystats.hotjar.io wss://*.hotjar.com; style-src 'self' 'unsafe-inline' 'self' 'unsafe-inline' blob: https://fonts.googleapis.com https://static.hotjar.com https://script.hotjar.com 'unsafe-inline'; img-src 'self' data: i.ytimg.com data: https://*.googleapis.com https://*.google.com https://*.gstatic.com kraeuterhaus-nocookie.de www.kraeuterhaus-nocookie.de https://t.adcell.com https://img.youtube.com https://ads.yieldmo.com https://sync.1rx.io https://as.ad4m.at https://ih.adscale.de https://dsum-sec.casalemedia.com https://a.twiago.com https://sync.targeting.unrulymedia.com bat.bing.com gum.criteo.com x.bidswitch.net ib.adnxs.com contextual.media.net pixel.rubiconproject.com rtb-csync.smartadserver.com sync-t1.taboola.com criteo-sync.teads.tv eb2.3lift.com hb.yahoo.net cm.adform.net visitor.omnitagjs.com r.casalemedia.com id5-sync.com ad.360yield.com matching.ivitrack.com exchange.mediavine.com jadserve.postrelease.com sync.outbrain.com simage2.pubmatic.com match.sharethrough.com criteo-partners.tremorhub.com ad.yieldlab.net sync-criteo.ads.yieldmo.com e1.emxdgt.com c1.adform.net dpm.demdex.net dis.criteo.com www.facebook.com https://connect.facebook.net www.google.com www.google.de https://*.g.doubleclick.net adservice.google.com cm.g.doubleclick.net https://server.seadform.net www.googletagmanager.com https://public-prod-dspcookiematching.dmxleo.com ct.pinterest.com widgets.trustedshops.com https://static.hotjar.com https://script.hotjar.com i.ytimg.com; font-src 'self' data: https://fonts.gstatic.com https://script.hotjar.com; frame-src 'self' mailto: secure.pay1.de www.youtube-nocookie.com https://*.google.com https://t.adcell.com hal9000.redintelligence.net pixel.bsmartdata.com ads.lekkerads.nl ad.ad-srv.net s.marvellousmachine.net https://containertags.belboon.com https://analytics.bestofluck.io https://roxxtraxx.de https://ad4m.at https://c1.adform.net https://*.ad-srv.net/ https://cm.g.doubleclick.net https://ban.tangooserver.com gum.criteo.com fledge.eu.criteo.com connect.facebook.net www.facebook.com https://*.fls.doubleclick.net https://td.doubleclick.net/ ct.pinterest.com https://*.sovendus.com https://www.sovendus-connect.com https://vars.hotjar.com https://youtube.com https://www.youtube.com; media-src 'self'; base-uri 'self'; form-action 'self' www.facebook.com; upgrade-insecure-requests; |
access-control-allow-origin: |
https://www.kraeuterhaus.de |
strict-transport-security: |
max-age=15768000;includeSubDomains |
x-xss-protection: |
1; mode=block |
x-dns-prefetch-control: |
off |
x-content-type-options: |
nosniff, nosniff |
x-frame-options: |
sameorigin, SAMEORIGIN |
referrer-policy: |
same-origin |
permissions-policy: |
notifications=(self), push=(self) |
expires: |
Thu, 19 Nov 1981 08:52:00 GMT |
cache-control: |
no-store, no-cache, must-revalidate, no-transform |
pragma: |
no-cache |
set-cookie: |
skin=website; path=/,lang[website]=de; path=/,lang[checkout]=de; path=/,lang[mobile]=de; path=/,lang[mobile_checkout]=de; path=/,country=de; path=/,site=0; path=/,session_ksb18=d2abllr34ik212avul41hl4n88; path=/; secure; HttpOnly; SameSite=none |
upgrade: |
h2,h2c |
connection: |
Upgrade, close |
vary: |
Accept-Encoding |
x-ua-compatible: |
IE=edge |
x-permitted-cross-domain-policies: |
none |
transfer-encoding: |
chunked |
content-type: |
text/html; charset=UTF-8 |
|