date: |
Tue, 01 Oct 2024 05:58:13 GMT |
content-type: |
text/html; charset=utf-8 |
content-length: |
229822 |
connection: |
close |
set-cookie: |
AWSALB=MVmpm61bq1Pwbykt/UNl8u7kTeI0Mp1slIOXtK1WLY2qZw4oRctKzUVKKGQfhrWmCY/neaqzoVlBr2nb8Ez0qeyM8WP+zj2Euka/BdvmS5hx7qrJ6qzSCUgHTowR; Expires=Tue, 08 Oct 2024 05:58:13 GMT; Path=/,AWSALBCORS=MVmpm61bq1Pwbykt/UNl8u7kTeI0Mp1slIOXtK1WLY2qZw4oRctKzUVKKGQfhrWmCY/neaqzoVlBr2nb8Ez0qeyM8WP+zj2Euka/BdvmS5hx7qrJ6qzSCUgHTowR; Expires=Tue, 08 Oct 2024 05:58:13 GMT; Path=/; SameSite=None; Secure,ASP.NET_SessionId=g5ulydpu5wwvfebac1ionfq5; path=/; HttpOnly; SameSite=Lax,ASP.NET_SessionId=g5ulydpu5wwvfebac1ionfq5; path=/; HttpOnly; SameSite=Lax,SC_ANALYTICS_GLOBAL_COOKIE=8872d5954c534e4fa12eb3f25f2bac33|False; expires=Fri, 29-Sep-2034 05:58:13 GMT; path=/; HttpOnly,__RequestVerificationToken=VcpvENhWsfezqvqPlSLyfycTadvNZxWjg8xMiJhSYhpFFjxUSWJcUARqMYCmpNaas6sSKejXDAPdWCz5rQM9QDQaks81; path=/; HttpOnly,sxa_site=ASUS; path=/ |
cache-control: |
no-cache, no-store |
pragma: |
no-cache |
expires: |
-1 |
x-frame-options: |
SAMEORIGIN, DENY |
content-security-policy: |
default-src 'self' data: *.pricespider.com *.visibleconsumerinsight.com *.mapbox.com cdnjs.cloudflare.com ;style-src 'self' *.bootstrapcdn.com 'unsafe-inline' fonts.googleapis.com *.bazaarvoice.com *.iesnare.com *.pricespider.com *.visibleconsumerinsight.com *.mapbox.com *.braintreegateway.com *.braintree-api.com *.s3.amazonaws.com *.cloudfront.net fonts.gstatic.com www.googletagmanager.com script.crazyegg.com a.optmnstr.com tagmanager.google.com *.boxcdn.net *.box.com ucalc.pro api.ucalc.pro cloud.typography.com *.omappapi.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com lwta.my.site.com wss://api.cobrowse.io js.cobrowse.io api.cobrowse.io wss://str-use2.cobrowse.io cobrowse.io lwta--full.my.salesforce.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com *.meetlixil.com service.force.com static.lightning.force.com *.force.com *.jsdelivr.net ;base-uri 'self' ;child-src 'self' blob: ;connect-src 'self' *.addthis.com *.addthisedge.com z.moatads.com s.ytimg.com s.pinimg.com connect.facebook.net static.ads-twitter.com analytics.twitter.com ct.pinterest.com *.bazaarvoice.com *.iesnare.com *.google-analytics.com *.analytics.google.com *.google.com *.google google.com *.pricespider.com *.visibleconsumerinsight.com *.mapbox.com *.braintreegateway.com *.braintree-api.com *.cloudfront.net *.paypalobjects.com *.sandbox.paypal.com *.paypal.com tst.kaptcha.com *.omappapi.com *.omappapi.com *.facebook.com *.boxcdn.net *.box.com *.crazyegg.com cdn.acsbapp.com acsbapp.com *.doubleclick.net *.g.doubleclick.net *.analytics.google.com *.google.com *.google *.bttrack.com bttrack.com cdn.bttrack.com *.optimizely.com *.quotekitchenandbath.com *.qkandb.net *.kbquote.com *.grohe.us *.americanstandard-us.com *.teads.tv *.hotjar.com wss://*.hotjar.com *.acsbapp.com *.inspectlet.com *.mouseflow.com *.smartlook.com *.smartlook.cloud wss://api.cobrowse.io js.cobrowse.io api.cobrowse.io wss://str-use2.cobrowse.io cobrowse.io lwta--full.my.salesforce.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com *.meetlixil.com full-lixilamerica.cs29.force.com lwta--full.my.salesforce.com static.lightning.force.com full-lixilamerica.cs192.force.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com lwta.my.site.com *.clarity.ms *.dwin1.com *.zenaps.com *.sciencebehindecommerce.com *.engage.app talkative-cdn.com *.talkative-cdn.com *.amazonaws.com *.pusher.com *.talkative-ws.com bat.bing.com *.amazon-adsystem.com *.reddit.com *.redditstatic.com ara.paa-reporting-advertising.amazon *.criteo.net *.criteo.com *.fontawesome.com ;font-src 'self' fonts.gstatic.com *.bootstrapcdn.com 'unsafe-inline' data: *.cloudfront.net *.acsbapp.com *.omappapi.com *.jsdelivr.net *.fontawesome.com ;frame-ancestors 'self' *.addthis.com *.addthisedge.com z.moatads.com s.ytimg.com s.pinimg.com connect.facebook.net static.ads-twitter.com analytics.twitter.com ct.pinterest.com www.google.com google.com *.analytics.google.com *.google.com *.google *.youtube.com youtu.be *.youtube-nocookie.com americanstandard.app.box.com *.bazaarvoice.com *.iesnare.com *.pinterest.com ;frame-src 'self' *.addthis.com *.addthisedge.com z.moatads.com s.ytimg.com s.pinimg.com connect.facebook.net static.ads-twitter.com analytics.twitter.com ct.pinterest.com www.google.com google.com *.analytics.google.com *.google.com *.google *.youtube.com youtu.be *.youtube-nocookie.com americanstandard.app.box.com *.bazaarvoice.com *.iesnare.com *.pinterest.com *.braintreegateway.com *.braintree-api.com *.paypalobjects.com *.sandbox.paypal.com *.paypal.com tst.kaptcha.com *.facebook.com https://dxv.wufoo.com/ ucalc.pro api.ucalc.pro www.googletagmanager.com script.crazyegg.com a.optmnstr.com tagmanager.google.com *.zmags.com servedby.flashtalking.com lixil3d.com intent: lwta--full.my.salesforce.com full-lixilamerica.cs29.force.com lwta--full.my.salesforce.com static.lightning.force.com full-lixilamerica.cs192.force.com *.force.com *.cs29.force.com *.optimizely.com cac.appnovahome.com *.quotekitchenandbath.com *.qkandb.net *.kbquote.com *.grohe.us *.americanstandard-us.com *.meetlixil.com dv84u4f1bblk2.cloudfront.net *.hotjar.com wss://*.hotjar.com *.inspectlet.com *.mouseflow.com *.dwin1.com *.zenaps.com *.sciencebehindecommerce.com *.criteo.net *.criteo.com *.screenmeet.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com *.pingpilot.com *.engage.app talkative-cdn.com *.talkative-cdn.com *.amazonaws.com *.pusher.com *.talkative-ws.com *.doubleclick.net *.g.doubleclick.net *.analytics.google.com *.google.com *.google *.amazon-adsystem.com ;img-src 'self' data: https: blob: *.bazaarvoice.com *.iesnare.com *.youtube.com youtu.be *.youtube-nocookie.com www.googletagmanager.com script.crazyegg.com a.optmnstr.com tagmanager.google.com *.pinterest.com www.google.com google.com *.analytics.google.com *.google.com *.google *.s3.amazonaws.com www.gstatic.com ssl.gstatic.com *.dwin1.com *.zenaps.com *.sciencebehindecommerce.com *.engage.app talkative-cdn.com *.talkative-cdn.com *.amazonaws.com *.pusher.com *.talkative-ws.com *.rakuten.com *.linksynergy.com *.nxtck.com *.xg4ken.com ;media-src 'self' *.cloudfront.net *.engage.app talkative-cdn.com *.talkative-cdn.com *.amazonaws.com *.pusher.com *.talkative-ws.com ;object-src 'self' ;script-src 'self' *.addthis.com *.addthisedge.com z.moatads.com s.ytimg.com s.pinimg.com connect.facebook.net static.ads-twitter.com analytics.twitter.com ct.pinterest.com *.bazaarvoice.com *.iesnare.com www.google.com google.com *.analytics.google.com *.google.com *.google www.gstatic.com ssl.gstatic.com www.googletagmanager.com script.crazyegg.com a.optmnstr.com tagmanager.google.com *.salesforceliveagent.com *.youtube.com youtu.be *.youtube-nocookie.com *.pricespider.com *.visibleconsumerinsight.com *.mapbox.com *.pinterest.com *.facebook.com americanstandard.app.box.com *.google-analytics.com *.analytics.google.com *.google.com *.google google.com 'unsafe-eval' 'unsafe-inline' *.braintreegateway.com *.braintree-api.com *.s3.amazonaws.com *.cloudfront.net *.paypalobjects.com *.sandbox.paypal.com *.paypal.com tst.kaptcha.com 100009658.collect.igodigital.com *.omappapi.com *.omappapi.com *.boxcdn.net *.box.com ucalc.pro api.ucalc.pro lixilamericas.atlassian.net *.zmags.com cdn.acsbapp.com acsbapp.com *.bttrack.com bttrack.com cdn.bttrack.com *.optimizely.com *.redditstatic.com *.teads.tv *.hotjar.com wss://*.hotjar.com *.inspectlet.com *.mouseflow.com *.criteo.net *.criteo.com *.dwin1.com *.zenaps.com *.sciencebehindecommerce.com *.smartlook.com *.smartlook.cloud lwta--full.my.salesforce.com service.force.com static.lightning.force.com *.force.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com lixilamerica.force.com lwta.my.salesforce.com static.lightning.force.com lwta.my.site.com wss://api.cobrowse.io js.cobrowse.io api.cobrowse.io wss://str-use2.cobrowse.io cobrowse.io *.clarity.ms *.pingpilot.com *.engage.app talkative-cdn.com *.talkative-cdn.com *.amazonaws.com *.pusher.com *.talkative-ws.com bat.bing.com *.doubleclick.net *.g.doubleclick.net *.analytics.google.com *.google.com *.google *.collect.igodigital.com *.amazon-adsystem.com *.rakuten.com *.linksynergy.com *.nxtck.com *.xg4ken.com cdnjs.cloudflare.com lantern.roeyecdn.com *.fontawesome.com ; |
x-xss-protection: |
1; mode=block |
strict-transport-security: |
max-age=63072000; includeSubDomains; |
x-content-type-options: |
nosniff |
|