content-type: |
text/html; charset=utf-8 |
request-context: |
appId=cid-v1:21d4e0ae-a33c-4037-b5fb-14e6aa4460da |
access-control-allow-origin: |
* |
content-security-policy: |
script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdnjs.cloudflare.com http://assets.adobedtm.com https://www.googletagmanager.com *.facebook.net *.hotjar.com https://www.googleadservices.com *.doubleclick.net *.googleapis.com *.go-mpulse.net *.juspay.in https://youtube.com *.akstat.io *.cloudinary.com https://maps.gstatic.com *.cloudfront.net *.adobe.com *.omniture.com *.asbmit.com *.admitad.com *.bing.com https://cromapt-res.cloudinary.com *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com https://croma.api.cashify.in/ *.omguk.com *.qualtrics.com *.fullstory.com *.tatadigital.com *.croma.com https://webtrafficsource.com/ https://cdn.taboola.com/ https://www.clarity.ms/ *.criteo.com *.criteo.net *.wzrkt.com *.clevertap-prod.com *.spiky.wzrkt.com *.spiky.clevertap-prod.com https://s3-eu-west-1.amazonaws.com/static.wizrocket.com/js/sw_webpush.js *.appdynamics.com *.eum-appdynamics.com https://login.microsoftonline.com *.google.com *.gstatic.com;default-src 'self' *.croma.com *.demdex.net https://cm.everesttech.net *.tatadigital.com https://www.facebook.com https://www.google.com https://www.google-analytics.com https://analytics.google.com/ https://www.google.co.in *.omtrdc.net https://maps.googleapis.com http://www.yellowslice.us https://yellowslice.us/ *.facebook.net *.juspay.in https://youtube.com *.go-mpulse.net *.akstat.io *.cloudinary.com *.hotjar.com https://maps.gstatic.com *.cloudfront.net *.adobe.com *.omniture.com *.asbmit.com *.admitad.com *.bing.com http://ysprod.croma.com *.hotjar.io wss://*.hotjar.com data: *.jwpsrv.com *.jwplatform.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com blob: https://croma.api.cashify.in/ *.omguk.com *.qualtrics.com *.fullstory.com *.tatadigital.com *.croma.com https://ad.doubleclick.net/ https://googleads.g.doubleclick.net/ *.adobe.com *.criteo.com *.criteo.net *.wzrkt.com *.clevertap-prod.com *.spiky.wzrkt.com *.spiky.clevertap-prod.com https://s3-eu-west-1.amazonaws.com/static.wizrocket.com/js/sw_webpush.js *.appdynamics.com *.eum-appdynamics.com https://login.microsoftonline.com *.google.com *.gstatic.com;style-src 'self' 'unsafe-inline' http://www.yellowslice.us https://yellowslice.us/ https://fonts.googleapis.com *.croma.com data: *.jwpsrv.com *.jwplatform.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com;style-src-elem 'self' 'unsafe-inline' https://fonts.googleapis.com http://www.yellowslice.us https://yellowslice.us/ *.croma.com *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com;font-src 'self' 'unsafe-inline' https://fonts.gstatic.com https://fonts.googleapis.com data: *.croma.com *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com;frame-src 'self' *.doubleclick.net https://www.facebook.com http://www.yellowslice.us https://yellowslice.us/ *.croma.com *.demdex.net https://media.flixcar.com *.juspay.in https://youtube.com https://www.youtube.com https://docs.google.com *.hotjar.com https://stacins03hybdevcma01.z29.web.core.windows.net *.flixcar.com *.flixfacts.com *.flix360.com *.flix360.io https://livevideo.croma.com:8443/ intent://arvr.google.com *.cloudfront.net *.tatadigital.com mailto: *.croma.com https://zodiacupdates.com/ *.adobe.com *.criteo.com *.criteo.net https://www.croma-myfestivewish.com https://wap-ci-ecom-dev-chb-01.azurewebsites.net/ https://wap-ci-ecom-pt-chb-01.azurewebsites.net/ https://wap-ci-ecom-prd-chb-01.azurewebsites.net/;frame-ancestors 'self' https://livevideo.croma.com:8443/ |
x-dns-prefetch-control: |
off |
expect-ct: |
max-age=0 |
x-frame-options: |
SAMEORIGIN |
strict-transport-security: |
max-age=15724800; includeSubDomains |
x-download-options: |
noopen |
x-content-type-options: |
nosniff |
x-permitted-cross-domain-policies: |
none |
referrer-policy: |
no-referrer |
x-xss-protection: |
0 |
etag: |
W/"5d021-2HTRG0iZH94h/dCJyhOOHUNFGmc" |
x-akamai-transformed: |
9 - 0 pmb=mRUM,2 |
cache-control: |
max-age=600 |
expires: |
Tue, 01 Oct 2024 06:21:30 GMT |
date: |
Tue, 01 Oct 2024 06:11:30 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
AKA_A2=A; expires=Tue, 01-Oct-2024 07:11:30 GMT; path=/; domain=croma.com; secure; HttpOnly |
server-timing: |
cdn-cache; desc=HIT, edge; dur=1, ak_p; desc="1727763090898_1490884709_247343262_129_16573_3_8_-";dur=1 |
link: |
<https://www.croma.com/assets/fonts/Switzer-Bold.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://assets.croma.com/assets/fonts/croma.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://www.croma.com/assets/fonts/Switzer-Regular.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://www.croma.com/assets/fonts/Switzer-Medium.woff2>;rel="preload";as="font";type="font/woff2";crossorigin, <https://assets.croma.com>;rel="preconnect",<https://accounts.tatadigital.com>;rel="preconnect",<https://cdnjs.cloudflare.com>;rel="preconnect",<https://cdn.appdynamics.com>;rel="preconnect",<https://media-ik.croma.com>;rel="preconnect",<https://edge.fullstory.com>;rel="preconnect",<https://cromaretail.demdex.net>;rel="preconnect",<https://bat.bing.com>;rel="preconnect", <https://assets.adobedtm.com>;rel="preconnect",<https://www.googletagmanager.com>;rel="preconnect" |