content-type: |
text/html; charset=utf-8 |
content-length: |
94939 |
connection: |
close |
date: |
Tue, 01 Oct 2024 20:26:18 GMT |
server: |
nginx |
content-security-policy: |
default-src 'none';base-uri 'self' *.adform.net cdn.adtron.io;connect-src https://*.nebenan.de https://nebenan.de delivery.adnuntius.com delivery.nebenan.de cdn.adnuntius.com/adn.js https://europe-west1-ad-template-fb.cloudfunctions.net https://cdn.stickyadstv.com/* sdk.fra-01.braze.eu iteratehq.com https://translate.google.com https://*.google-analytics.com www.google-analytics.com/ https://ampcid.google.com https://stats.g.doubleclick.net https://www.facebook.com https://fonts.googleapis.com https://translate.googleapis.com doubleclick.net googlesyndication.com csi.gstatic.com htlb.casalemedia.com adservice.google.de adservice.google.com ad.yieldlab.net 2mdn.net cdn.ampproject.org click-performance.com code.jquery.com amazon-adsystem.com servenobid.com rubiconproject.com adnxs.com onetag-sys.com indexww.com bidswitch.net 4dex.io jsdelivr.net amazon.dev a2z.com facebook.com script.ac google.com rubiconproject.com pubmatic.com adform.net oracle.com console.googletagservices.com adnuntius.com bing.com eb2.3lift.com u.openx.net ssbsync.smartadserver.com googleadservices.com ads.adnuntius.delivery fastlane.rubiconproject.com grid.bidswitch.net criteo.com createjs.com 2mdn.net lijit.com casalemedia.com adtron.io *.doubleclick.net *.googlesyndication.com *.csi.gstatic.com *.htlb.casalemedia.com *.adservice.google.de *.adservice.google.com *.ad.yieldlab.net *.2mdn.net *.cdn.ampproject.org *.click-performance.com *.code.jquery.com *.amazon-adsystem.com *.servenobid.com *.rubiconproject.com *.adnxs.com *.onetag-sys.com *.indexww.com *.bidswitch.net *.4dex.io *.jsdelivr.net *.amazon.dev *.a2z.com *.facebook.com *.script.ac *.google.com *.rubiconproject.com *.pubmatic.com *.adform.net *.oracle.com *.console.googletagservices.com *.adnuntius.com *.bing.com *.eb2.3lift.com *.u.openx.net *.ssbsync.smartadserver.com *.googleadservices.com *.ads.adnuntius.delivery *.fastlane.rubiconproject.com *.grid.bidswitch.net *.criteo.com *.createjs.com *.2mdn.net *.lijit.com *.casalemedia.com *.adtron.io https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com https://api.maptiler.com https://webto.salesforce.com content.viralize.tv ads.viralize.tv monetize-static.viralize.tv cdn.ravenjs.com ads.stickyadstv.com *.pubmatic.com *.adform.net *.spotxchange.com *.smartadserver.com ice.360yield.com api.tsbluebox.com https://cdn.stickyadstv.com/ https://cdn.privacy-mgmt.com;script-src 'self' 'unsafe-inline' 'unsafe-eval' cdn.adnuntius.com/adn.js https://adn.nebenan.de/adn.js cdnjs.cloudflare.com 'unsafe-inline' js.appboycdn.com platform.iteratehq.com https://cdn.datenschutz.burda.com https://js.chargebee.com connect.facebook.net https://*.google-analytics.com www.google-analytics.com/ tagmanager.google.com googletagmanager.com www.googletagmanager.com stats.g.doubleclick.net translate.google.com www.googleadservices.com doubleclick.net googlesyndication.com csi.gstatic.com htlb.casalemedia.com adservice.google.de adservice.google.com ad.yieldlab.net 2mdn.net cdn.ampproject.org click-performance.com code.jquery.com amazon-adsystem.com servenobid.com rubiconproject.com adnxs.com onetag-sys.com indexww.com bidswitch.net 4dex.io jsdelivr.net amazon.dev a2z.com facebook.com script.ac google.com rubiconproject.com pubmatic.com adform.net oracle.com console.googletagservices.com adnuntius.com bing.com eb2.3lift.com u.openx.net ssbsync.smartadserver.com googleadservices.com ads.adnuntius.delivery fastlane.rubiconproject.com grid.bidswitch.net criteo.com createjs.com 2mdn.net lijit.com casalemedia.com adtron.io *.doubleclick.net *.googlesyndication.com *.csi.gstatic.com *.htlb.casalemedia.com *.adservice.google.de *.adservice.google.com *.ad.yieldlab.net *.2mdn.net *.cdn.ampproject.org *.click-performance.com *.code.jquery.com *.amazon-adsystem.com *.servenobid.com *.rubiconproject.com *.adnxs.com *.onetag-sys.com *.indexww.com *.bidswitch.net *.4dex.io *.jsdelivr.net *.amazon.dev *.a2z.com *.facebook.com *.script.ac *.google.com *.rubiconproject.com *.pubmatic.com *.adform.net *.oracle.com *.console.googletagservices.com *.adnuntius.com *.bing.com *.eb2.3lift.com *.u.openx.net *.ssbsync.smartadserver.com *.googleadservices.com *.ads.adnuntius.delivery *.fastlane.rubiconproject.com *.grid.bidswitch.net *.criteo.com *.createjs.com *.2mdn.net *.lijit.com *.casalemedia.com *.adtron.io https://*.hotjar.com content.viralize.tv ads.viralize.tv monetize-static.viralize.tv cdn.ravenjs.com ads.stickyadstv.com *.pubmatic.com *.smartadserver.com ice.360yield.com *.richaudience.com pghub.io *.googleapis.com *.adform.net https://cdn.stickyadstv.com/ https://cdn.privacy-mgmt.com;img-src 'self' https://* https://*.google-analytics.com www.google-analytics.com/ https://www.google.com/ads/ga-audiences www.googletagmanager.com ssl.gstatic.com www.gstatic.com stats.g.doubleclick.net *.google.com https://*.hotjar.com data: blob: *.adform.net ads.stickyadstv.com;style-src 'self' 'unsafe-inline' cdnjs.cloudflare.com static.nebenan.de use.fontawesome.com platform.iteratehq.com js.chargebee.com tagmanager.google.com fonts.googleapis.com translate.googleapis.com translate.google.com googleapis.com cdn.adtron.io https://*.hotjar.com;font-src 'self' static.nebenan.de use.fontawesome.com cdn.braze.eu data: fonts.gstatic.com fonts.googleapis.com cdn.adtron.io https://*.hotjar.com;manifest-src 'self';media-src 'self' assets.adnuntius.com assets.nebenan.de https://monetize-stream.viralize.tv/ gvt1.com;form-action 'self' https://webto.salesforce.com;worker-src 'self' blob:;report-uri https://sentry.nebenan.de/api/5/security/?sentry_key=3c1ea3dfcca6448184d587054ac1d4a7;frame-src delivery.adnuntius.com delivery.nebenan.de https://csync-global.smartadserver.com https://csync-eu.smartadserver.com http://csync.smartadserver.com https://ads.pubmatic.com https://secure-assets.rubiconproject.com https://eus.rubiconproject.com https://cdn.datenschutz.burda.com https://*.chargebee.com www.googletagmanager.com doubleclick.net googlesyndication.com csi.gstatic.com htlb.casalemedia.com adservice.google.de adservice.google.com ad.yieldlab.net 2mdn.net cdn.ampproject.org click-performance.com code.jquery.com amazon-adsystem.com servenobid.com rubiconproject.com adnxs.com onetag-sys.com indexww.com bidswitch.net 4dex.io jsdelivr.net amazon.dev a2z.com facebook.com script.ac google.com rubiconproject.com pubmatic.com adform.net oracle.com console.googletagservices.com adnuntius.com bing.com eb2.3lift.com u.openx.net ssbsync.smartadserver.com googleadservices.com ads.adnuntius.delivery fastlane.rubiconproject.com grid.bidswitch.net criteo.com createjs.com 2mdn.net lijit.com casalemedia.com adtron.io *.doubleclick.net *.googlesyndication.com *.csi.gstatic.com *.htlb.casalemedia.com *.adservice.google.de *.adservice.google.com *.ad.yieldlab.net *.2mdn.net *.cdn.ampproject.org *.click-performance.com *.code.jquery.com *.amazon-adsystem.com *.servenobid.com *.rubiconproject.com *.adnxs.com *.onetag-sys.com *.indexww.com *.bidswitch.net *.4dex.io *.jsdelivr.net *.amazon.dev *.a2z.com *.facebook.com *.script.ac *.google.com *.rubiconproject.com *.pubmatic.com *.adform.net *.oracle.com *.console.googletagservices.com *.adnuntius.com *.bing.com *.eb2.3lift.com *.u.openx.net *.ssbsync.smartadserver.com *.googleadservices.com *.ads.adnuntius.delivery *.fastlane.rubiconproject.com *.grid.bidswitch.net *.criteo.com *.createjs.com *.2mdn.net *.lijit.com *.casalemedia.com *.adtron.io https://*.hotjar.com https://cdn.privacy-mgmt.com;child-src js.chargebee.com www.googletagmanager.com blob:;frame-ancestors 'none' |
set-cookie: |
ab=8eb644d3-2507-0814-9386-e92caf3a41f2; Path=/ |
etag: |
W/"172db-sGrIp2ZXTWuCiVTvx+U3cPsheZw" |
access-control-allow-origin: |
* |
access-control-allow-methods: |
POST, GET, OPTIONS, DELETE, PUT |
access-control-max-age: |
86400 |
access-control-allow-headers: |
x-requested-with, Content-Type, origin, authorization, accept, client-security-token, X-AUTH_TOKEN, X-AUTH-TOKEN, API-VERSION |
x-frame-options: |
SAMEORIGIN |
cache-control: |
max-age=0 |
x-powered-by: |
nebenan |
x-runtime: |
nebenan |
x-content-type-options: |
nosniff |
x-xss-protection: |
1; mode=block |
referrer-policy: |
strict-origin-when-cross-origin |
strict-transport-security: |
max-age=31536000; includeSubDomains; preload |
vary: |
Accept-Encoding |
x-cache: |
Miss from cloudfront |
via: |
1.1 0b7cb67940347be0c4ee6f93e9091938.cloudfront.net (CloudFront) |
x-amz-cf-pop: |
AMS58-P2 |
x-amz-cf-id: |
GTbbNFonr-t4zYtLuo8_i1ZnoIeXmMaJG6dbNF-XAx_ks_youPhXNA== |