date: |
Tue, 01 Oct 2024 11:56:42 GMT |
content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
server: |
nginx |
vary: |
Accept-Encoding |
cache-control: |
no-cache, private |
x-content-type-options: |
nosniff |
strict-transport-security: |
max-age=15768000; includeSubDomains |
referrer-policy: |
strict-origin-when-cross-origin |
x-frame-options: |
DENY |
content-security-policy: |
default-src 'self' static1.clickandboat.com; connect-src 'self' static2.clickandboat.com static3.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ quasar.clickbo.at https://logs1412.xiti.com *.google-analytics.com stats.g.doubleclick.net accounts.google.com bat.bing.com https://analytics.tiktok.com api.stripe.com ekr.zdassets.com clickandboat.zendesk.com wss://widget-mediator.zopim.com widget-mediator.zopim.com *.ingest.sentry.io api.realytics.io *.paypal.com https://*.clarity.ms https://s2s.adjust.com/event click-and-boat.pxf.io https://api.privacy-center.org *.criteo.com graph.facebook.com www.facebook.com https://respondent.survicate.com https://survey.survicate.com https://survey-prd.survicate-cdn.com; font-src 'self' data: static3.clickandboat.com fonts.gstatic.com https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com; frame-ancestors 'self'; frame-src 'self' *.facebook.com *.criteo.com accounts.google.com www.google.com js.stripe.com hooks.stripe.com www.googletagmanager.com *.doubleclick.net *.paypal.com click-and-boat.pxf.io static1.clickandboat.com; img-src 'self' static1.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ https://blog.clickandboat.com/ blog.clickandboat.com data: blob: res.cloudinary.com quasar.clickbo.at *.google-analytics.com *.doubleclick.net secure.adnxs.com www.google.fr www.google.it www.google.es www.google.com www.google.de www.google.nl www.google.co.uk www.google.gr www.google.pl www.google.ch www.google.be www.google.com.br www.google.hr www.google.at www.google.pt www.google.se www.google.ru www.google.ca www.google.com.ar www.google.com.tr www.google.com.ua www.google.ie www.google.si www.google.ro www.google.com.mx www.google.com.mt www.google.com.au www.google.dk www.google.ae www.google.gp www.google.hu www.google.cz www.google.lu www.google.com.cy www.google.no www.google.me www.google.bg www.google.co.il www.google.rs www.google.sk *.bing.com *.criteo.com *.facebook.com *.mydialoginsight.com maps.googleapis.com *.gstatic.com *.google.com *.google.fr v2assets.zopim.io v2uploads.zopim.io clickandboat.zendesk.com https://*.clarity.ms https://s2s.adjust.com/event click-and-boat.pxf.io https://www.ojrq.net https://logs-01.loggly.com https://sdk.privacy-center.org https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com https://assets.survicate.com https://img.survicate.com https://images.unsplash.com; script-src 'unsafe-eval' 'self' static2.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ quasar.clickbo.at https://tag.aticdn.net *.google-analytics.com *.googleadservices.com *.google.com *.ggpht.com www.googletagmanager.com bat.bing.com www.facebook.com https://analytics.tiktok.com *.criteo.net *.criteo.com *.mydialoginsight.com *.googleapis.com www.gstatic.com connect.facebook.net js.stripe.com static.zdassets.com widget-mediator.zopim.com *.realytics.io *.realytics.net https://*.clarity.ms https://c.bing.com https://s2s.adjust.com/event https://utt.impactcdn.com https://sdk.privacy-center.org https://tag.aticdn.net 'unsafe-inline' https://survey.survicate.com https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com https://survey-prd.survicate-cdn.com *.paypal.com 'nonce-jHrJlV98aU+vZXBnXU36vw=='; style-src 'self' static2.clickandboat.com static3.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ fonts.googleapis.com tagmanager.google.com accounts.google.com https://sdk.privacy-center.org 'unsafe-inline' https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com |
x-content-security-policy: |
default-src 'self' static1.clickandboat.com; connect-src 'self' static2.clickandboat.com static3.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ quasar.clickbo.at https://logs1412.xiti.com *.google-analytics.com stats.g.doubleclick.net accounts.google.com bat.bing.com https://analytics.tiktok.com api.stripe.com ekr.zdassets.com clickandboat.zendesk.com wss://widget-mediator.zopim.com widget-mediator.zopim.com *.ingest.sentry.io api.realytics.io *.paypal.com https://*.clarity.ms https://s2s.adjust.com/event click-and-boat.pxf.io https://api.privacy-center.org *.criteo.com graph.facebook.com www.facebook.com https://respondent.survicate.com https://survey.survicate.com https://survey-prd.survicate-cdn.com; font-src 'self' data: static3.clickandboat.com fonts.gstatic.com https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com; frame-ancestors 'self'; frame-src 'self' *.facebook.com *.criteo.com accounts.google.com www.google.com js.stripe.com hooks.stripe.com www.googletagmanager.com *.doubleclick.net *.paypal.com click-and-boat.pxf.io static1.clickandboat.com; img-src 'self' static1.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ https://blog.clickandboat.com/ blog.clickandboat.com data: blob: res.cloudinary.com quasar.clickbo.at *.google-analytics.com *.doubleclick.net secure.adnxs.com www.google.fr www.google.it www.google.es www.google.com www.google.de www.google.nl www.google.co.uk www.google.gr www.google.pl www.google.ch www.google.be www.google.com.br www.google.hr www.google.at www.google.pt www.google.se www.google.ru www.google.ca www.google.com.ar www.google.com.tr www.google.com.ua www.google.ie www.google.si www.google.ro www.google.com.mx www.google.com.mt www.google.com.au www.google.dk www.google.ae www.google.gp www.google.hu www.google.cz www.google.lu www.google.com.cy www.google.no www.google.me www.google.bg www.google.co.il www.google.rs www.google.sk *.bing.com *.criteo.com *.facebook.com *.mydialoginsight.com maps.googleapis.com *.gstatic.com *.google.com *.google.fr v2assets.zopim.io v2uploads.zopim.io clickandboat.zendesk.com https://*.clarity.ms https://s2s.adjust.com/event click-and-boat.pxf.io https://www.ojrq.net https://logs-01.loggly.com https://sdk.privacy-center.org https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com https://assets.survicate.com https://img.survicate.com https://images.unsplash.com; script-src 'unsafe-eval' 'self' static2.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ quasar.clickbo.at https://tag.aticdn.net *.google-analytics.com *.googleadservices.com *.google.com *.ggpht.com www.googletagmanager.com bat.bing.com www.facebook.com https://analytics.tiktok.com *.criteo.net *.criteo.com *.mydialoginsight.com *.googleapis.com www.gstatic.com connect.facebook.net js.stripe.com static.zdassets.com widget-mediator.zopim.com *.realytics.io *.realytics.net https://*.clarity.ms https://c.bing.com https://s2s.adjust.com/event https://utt.impactcdn.com https://sdk.privacy-center.org https://tag.aticdn.net 'unsafe-inline' https://survey.survicate.com https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com https://survey-prd.survicate-cdn.com *.paypal.com 'nonce-jHrJlV98aU+vZXBnXU36vw=='; style-src 'self' static2.clickandboat.com static3.clickandboat.com https://assets.clickandboat.com/frontend-assets/master/ fonts.googleapis.com tagmanager.google.com accounts.google.com https://sdk.privacy-center.org 'unsafe-inline' https://surveys-static.survicate.com https://surveys-static-prd.survicate-cdn.com |
x-xss-protection: |
1; mode=block |
set-cookie: |
vulid=1CFmQ3bvH3yioVaeTwXqkW.14cbc0dd185a8d32a99028109ef5d1b9f2d40c855ef911c43a0351aa6af8b2f7; expires=Sun, 30 Mar 2025 11:56:42 GMT; Max-Age=15552000; path=/; secure; httponly; samesite=lax,abTests=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; expires=Tue, 01 Apr 2025 11:56:42 GMT; Max-Age=15724800; path=/; secure; httponly; samesite=lax,_visitors=FqahBBNI7F6W5GLaD0I8Lntv4ENY%2FA%2FcxnvUqVeNqEc3zOHrl16XKokJZ%2BwrplhiyfPXq1DVnk0zq97ApuE9wA%3D%3D; expires=Wed, 01 Oct 2025 11:56:42 GMT; Max-Age=31536000; path=/; secure; httponly; samesite=lax |