connection: |
close |
content-length: |
112495 |
x-dns-prefetch-control: |
off |
expires: |
-1 |
x-content-type-options: |
nosniff |
x-download-options: |
noopen |
etag: |
"1b76f-9nOq7PsNyxrzjopWd0XXJ9Qh6ms" |
accept-ranges: |
none |
x-frame-options: |
SAMEORIGIN |
link: |
</public/src/client/assets/fonts/icomoon-v10.woff2>; rel=preload; as=font; crossorigin, </public/src/client/assets/fonts/32D382_3_0.woff2>; rel=preload; as=font; crossorigin, </public/src/client/assets/fonts/32D382_2_0.woff2>; rel=preload; as=font; crossorigin, </public/src/client/assets/fonts/32D382_4_0.woff2>; rel=preload; as=font; crossorigin, </public/main.a75f94e438524211c5fd.css>; rel=preload; as=style, </public/app.5c5a9fed197fe1ae5863.css>; rel=preload; as=style, </public/layouts/default.7f50dda85bb6e2ea4414.css>; rel=preload; as=style, </public/pages/index.7335d440aea044d5e07d.css>; rel=preload; as=style, </public/1.9a9224a0ee865d462e05.css>; rel=preload; as=style, </public/7.9e5df55a21e06ec3f8f0.css>; rel=preload; as=style, <https://gepi.global-e.com/includes/css/1159>; rel=preload; as=style, </public/3d16c1e.modern.js>; rel=preload; as=script, </public/9798bac.modern.js>; rel=preload; as=script, </public/87b8bbb.modern.js>; rel=preload; as=script, </public/45f5354.modern.js>; rel=preload; as=script, </public/51f17be.modern.js>; rel=preload; as=script, </public/0d08ff7.modern.js>; rel=preload; as=script, </public/55e0bd6.modern.js>; rel=preload; as=script, </public/2d016ec.modern.js>; rel=preload; as=script, </public/c45de0d.modern.js>; rel=preload; as=script, </public/f0c1262.modern.js>; rel=preload; as=script |
x-xss-protection: |
1; mode=block |
set-cookie: |
wtid=it4l77taqbo3bcj3kp4183kjc3r6d1d83lu6beci0a4fav7gus50; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; HttpOnly; Secure,l_ab_ptd_evergreen-aa=control; Max-Age=5184000; Domain=.lulus.com; Path=/; Expires=Fri, 29 Nov 2024 22:05:09 GMT; Secure,flag_hide_exit_survey=false; Max-Age=2592000; Domain=.lulus.com; Path=/; Expires=Wed, 30 Oct 2024 22:05:09 GMT; Secure,flag_rokt_enabled=hHy9MCyqetzvEHG3X5vDY2P4hnf01T; Max-Age=2592000; Domain=.lulus.com; Path=/; Expires=Wed, 30 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_rokt-enabled=show-rokt-embedded; Max-Age=2592000; Domain=.lulus.com; Path=/; Expires=Wed, 30 Oct 2024 22:05:09 GMT; Secure,flag_enable_browser_newrelic=false; Max-Age=86400; Domain=.lulus.com; Path=/; Expires=Tue, 01 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_new-relic-browser=control; Max-Age=86400; Domain=.lulus.com; Path=/; Expires=Tue, 01 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_checkout-button-color-b=orange; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,flag_google_pla_quickview=false; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,flag_pla_redirect_plp_quickview=gGjb475ZzgquKdD84q2U8NjRAwJdnk; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_redirects-desktop=plp-quickview; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,flag_enable_sitenav_v2=false; Max-Age=604800; Domain=.lulus.com; Path=/; Expires=Mon, 07 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_top-nav=control; Max-Age=604800; Domain=.lulus.com; Path=/; Expires=Mon, 07 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_cfy-homecoming=cfy; Max-Age=864000; Domain=.lulus.com; Path=/; Expires=Thu, 10 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_cfy-wedding-guest=control; Max-Age=864000; Domain=.lulus.com; Path=/; Expires=Thu, 10 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_cfy-black-tie-wedding-guest=cfy; Max-Age=864000; Domain=.lulus.com; Path=/; Expires=Thu, 10 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_cfy-fall-wedding-guest=cfy; Max-Age=864000; Domain=.lulus.com; Path=/; Expires=Thu, 10 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_cfy-two-piece-sets=cfy; Max-Age=864000; Domain=.lulus.com; Path=/; Expires=Thu, 10 Oct 2024 22:05:09 GMT; Secure,flag_optout_plp_top_bar_categories=LreILSPFJmSyRM68UM0bxkyo5RFIW4; Max-Age=86400; Domain=.lulus.com; Path=/; Expires=Tue, 01 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_sub-nav-9-24=hidden; Max-Age=86400; Domain=.lulus.com; Path=/; Expires=Tue, 01 Oct 2024 22:05:09 GMT; Secure,flag_fit_note_updates_with_reviews=pR3anhw7bZDsePDFWc8j4PERg0IHO6; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,flag_fit_details_redesign=QxnPSrSpysyxzHzkrNAOJUi06PooVr; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_fit-note-update-9-26=enabled; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,l_ab_ptd_index-cfy-test=standard; Max-Age=1209600; Domain=.lulus.com; Path=/; Expires=Mon, 14 Oct 2024 22:05:09 GMT; Secure,_csrf=nYGdK_a-qGwPlDTXLQgYKyx3; Domain=.lulus.com; Path=/; HttpOnly; Secure,dtm_tracker=1; Domain=.lulus.com; Path=/; Secure,_ga=GA1.2.1006707704.1727733909; Max-Age=63072000; Domain=.lulus.com; Path=/; Expires=Wed, 30 Sep 2026 22:05:09 GMT; Secure,_lu_ga=GA1.2.1006707704.1727733909; Max-Age=63072000; Domain=.lulus.com; Path=/; Expires=Wed, 30 Sep 2026 22:05:09 GMT; Secure,_fbp=fb.1.1727733909177.5682516417; Max-Age=7776000; Domain=.lulus.com; Path=/; Expires=Sun, 29 Dec 2024 22:05:09 GMT; Secure,_pxhd=J1xjEUq77LeP/mhwPXQ7kjCOhjxVttlm57WolAl5Z-Cmoo/ku6o/eDN5FuP2uEs8btOm544VFI6yxevBU-c-UQ==:fCWg31JM9F30Y5SKvJ-gStzawOWW5RlUBKI/RNdcdHWWRE5BowFqUE7URNaa60/dtJMKG-wX1qGJShVnyNMG5vbULDPW-2vcgs3QvUM3DAk=; Expires=Tue, 30 Sep 2025 22:05:09 GMT; path=/; |
cache-control: |
no-store, no-cache, must-revalidate, post-check=0, pre-check=0 |
x-timer: |
S1727733909.062202,VS0,VE206 |
content-type: |
text/html; charset=utf-8 |
content-security-policy: |
default-src 'self' *.klarna.com; script-src 'self' *.lulus.com https://xo.lulus.com assets.adobedtm.com www.adobetag.com *.liadm.com apis.google.com *.google-analytics.com stats.g.doubleclick.net www.googletagmanager.com www.googleadservices.com googleads.g.doubleclick.net www.googlecommerce.com *.google.com *.gstatic.com sc-static.net static.criteo.net *.criteo.com s.pinimg.com *.pinterest.com bat.bing.com *.hotjar.com pocketpoints.com *.pocketpoints.com 'unsafe-inline' 'unsafe-eval' connect.facebook.net d2jjzw81hqbuqv.cloudfront.net js-agent.newrelic.com bam.nr-data.net bam-cell.nr-data.net *.paypal.com *.paypalobjects.com static-na.payments-amazon.com *.amazon.com js.stripe.com *.klarnacdn.net *.klarnaservices.com *.heartlandportico.com *.shareasale.com *.checkboxonline.com *.pepperjam.com *.pepperjamnetwork.com *.ascendpartner.com app.link *.brandlock.io dw5sgjxyidx0m.cloudfront.net *.bytedance.com *.ipstatp.com *.calendly.com calendly.com calendly.datapipe.prodperfect.com calendly.trackinglibrary.prodperfect.com collector-pxcj8k0tsv.perimeterx.net d21gpk1vhmjuf5.cloudfront.net *.evgnet.com *.rewardstyle.com *.shopstylecollective.com *.ibytedtos.com *.topbuzz.com *.tiktok.com *.tiktokcdn.com *.adlucent.com *.cardinalcommerce.com *.braintreegateway.com *.sandbox.braintree-api.com js.cnnx.link cdn.searchspring.net cdn.levelaccess.net *.fitanalytics.com www.youtube.com *.yotpo.com *.px-cdn.net *.studentbeans.com *.stylitics.com *.kustomerapp.com cdn.attn.tv tag.measured.com ads.avocet.io *.bglobale.com storage.googleapis.com/kochava-web-assets/ *.afterpay.com cdn.pdst.fm apps.rokt.com *.global-e.com *.collectivevoice.com *.creativecdn.com *.snapchat.com *.simonsignal.com simonsignal.com tags.fullcontact.com *.crwdcntrl.net *.impactcdn.com retailwidgets.appointedd.com js.klarna.com *.rewardstyle.com *.mountain.com *.redditstatic.com *.taggstar.com *.pbbl.co cdn.dashhudson.com; frame-src *.lulus.com *.lpsnmedia.net *.google.com *.snapchat.com *.doubleclick.net www.googletagmanager.com *.demdex.net *.hotjar.com *.criteo.com static.criteo.net www.facebook.com connect.facebook.net *.pinterest.com pinterest.adsymptotic.com t.pepperjamnetwork.com *.paypal.com *.paypalobjects.com *.braintreegateway.com *.cardinalcommerce.com static-na.payments-amazon.com *.amazon.com js.stripe.com hps.github.io *.shareasale.com *.checkboxonline.com *.heartlandportico.com *.pepperjam.com *.pepperjamnetwork.com *.omniture.com d2jjzw81hqbuqv.cloudfront.net www.talkable.com *.liadm.com *.klarna.com *.klarnaservices.com *.klarnaevt.com *.brandlock.io dw5sgjxyidx0m.cloudfront.net danv01ao0kdr2.cloudfront.net *.calendly.com calendly.com calendly.datapipe.prodperfect.com calendly.trackinglibrary.prodperfect.com *.evgnet.com ln-rules.rewardstyle.com *.topbuzz.com *.paycomonline.net *.shopstylecollective.com bytedance: ads.avocet.io ads.avocet.io www.youtube.com *.studentbeans.com lulus.attn.tv creatives.attn.tv r.atp.io www.bglobale.com *.global-e.com *.afterpay.com apps.rokt.com *.collectivevoice.com *.creativecdn.com retailwidget.appointedd.com *.pbbl.co; style-src 'unsafe-inline' *.lulus.com 'self' fonts.googleapis.com *.typekit.net calendly.com *.calendly.com *.braintreegateway.com *.fitanalytics.com *.yotpo.com maxcdn.bootstrapcdn.com *.klarnacdn.net *.stylitics.com *.bglobale.com *.global-e.com; font-src 'self' fonts.gstatic.com *.typekit.net *.fitanalytics.com use.fontawesome.com maxcdn.bootstrapcdn.com *.klarnacdn.net cdn.kustomerapp.com *.global-e.com likeshop.me; media-src *.lulus.com *.lulusdev.com cdn.kustomerapp.com cdn.dashhudson.com; img-src 'self' data: blob: *.lulusdev.com *.lulus.com lulusdev.112.2o7.net lulusproduction.112.2o7.net https://xo.lulus.com www.googletagmanager.com *.google-analytics.com csi.gstatic.com www.gstatic.com aa.agkn.com *.doubleclick.net www.google.com www.bizrate.com rd.connexity.net *.demdex.net *.sc.omtrdc.net cm.everesttech.net *.liadm.com bat.bing.com alocdn.com p.alocdn.com pippio.com www.facebook.com *.criteo.com *.criteo.net *.pinterest.com pinterest.adsymptotic.com pocketpoints.com *.pocketpoints.com www.polyvore.com www.ssense.com shareasale.com *.paypal.com *.paypalobjects.com ak1s.abmr.net *.ssl-images-amazon.com *.media-amazon.com static-na.payments-amazon.com *.klarna.com *.klarnaservices.com *.klarnauserservices.com *.klarnaevt.com *.checkboxonline.com *.brandlock.io tracker.unbxdapi.com *.evgnet.com *.topbuzz.com *.tiktok.com *.adlucent.com ads.avocet.io ads.avct.cloud *.braintreegateway.com d3cgm8py10hi0z.cloudfront.net *.fitanalytics.com i.ytimg.com via.placeholder.com tags.w55c.net *.yotpo.com lulus-ressh.cloudinary.com *.stylitics.com www.gravatar.com cdn.kustomerhostedcontent.com cdn.kustomerapp.com kustomer-prod1-attachments.s3.amazonaws.com events.attentivemobile.com *.global-e.com *.bglobale.com id.rlcdn.com *.afterpay.com retail.googleapis.com alb.reddit.com *.pbbl.co *.creativecdn.com lulus-us.attn.tv likeshop.me images.dashhudson.com dashhudson-static.s3.amazonaws.com cdn.dashhudson.com; connect-src 'self' tags.lulus.com *.demdex.net *.tt.omtrdc.net *.sc.omtrdc.net googleads.g.doubleclick.net stats.g.doubleclick.net *.liadm.com www.facebook.com bat.bing.com *.hotjar.com *.hotjar.io wss://*.hotjar.com *.google.com www.google-analytics.com bam.nr-data.net bam-cell.nr-data.net *.pinterest.com *.paypal.com *.amazon.com coin.amazonpay.com *.klarna.com *.klarnauserservices.com *.klarnaservices.com *.klarnaevt.com *.pingdom.net *.smartystreets.com *.brandlock.io danv01ao0kdr2.cloudfront.net lulus.checkboxonline.com collector-pxcj8k0tsv.perimeterx.net b.perimeterx.net *.sqs.us-west-2.amazonaws.com *.pxchk.net *.px-cdn.net *.px-cloud.net sqs.us-west-2.amazonaws.com pxchk.net px-cdn.net px-cloud.net *.evgnet.com *.tiktok.com *.braintree-api.com *.braintreegateway.com *.cardinalcommerce.com api.levelaccess.net *.fitanalytics.com *.criteo.com *.yotpo.com *.stylitics.com *.api.kustomerapp.com *.pusher.com *.pusherapp.com wss://*.pusherapp.com wss://ws-mt1.pusher.com s3.amazonaws.com *.pndsn.com *.attn.tv events.attentivemobile.com ads.avocet.io *.bglobale.com *.snapchat.com *.afterpay.com web-sdk.control.kochava.com us-central1-adaptive-growth.cloudfunctions.net *.creativecdn.com *.simonsignal.com simonsignal.com *.crwdcntrl.net *.fullcontact.com *.googlesyndication.com lulusfashionloungellc.sjv.io *.redditstatic.com pixel-config.reddit.com *.taggstar.com pixels.spotify.com lulus.attn.tv *.klaviyo.com api.likeshop.me |
fastly-restarts: |
1 |
date: |
Mon, 30 Sep 2024 22:05:09 GMT |
x-served-by: |
cache-ams21072-AMS, cache-ams2100119-AMS |
x-cache: |
MISS, MISS |
x-cache-hits: |
0, 0 |
vary: |
User-Agent, Accept-Encoding |
strict-transport-security: |
max-age=31557600 |
|