connection: |
close |
etag: |
"103d4b-XDLA6hs5YIA/9/AOOu+aiqK7TfM" |
x-download-options: |
noopen |
x-enterprise-service: |
CONTENT |
x-page-visit-event-type: |
homepage |
x-enterprise-ray-id: |
3RrPNX-OEe-KOwOZPNH6dA |
x-frame-options: |
SAMEORIGIN |
via: |
1.1 varnish, 1.1 varnish, 1.1 varnish |
x-subsite: |
en |
content-type: |
text/html; charset=utf-8 |
x-brand: |
matalan |
report-to: |
{"group":"report-endpoint","max_age":86400,"endpoints":[{"url":"https://www.matalan.co.uk/cspReport.txt","priority":1,"weight":1}],"include_subdomains":true} |
x-enterprise-service-version: |
0.19.8 |
x-dns-prefetch-control: |
off |
set-cookie: |
_csrf=gr9mW1WqoZGJuqmg3C2-iCDB; Path=/; Secure,ESESSIONID=; Path=/; Expires=Thu, 01 Jan 1970 00:00:00 GMT,chumewe_user=859e4a4a-1e42-4be6-9ece-3ed37238a333; domain=.matalan.co.uk; secure; path=/; expires=Sun, 30 Sep 2029 00:52:46 GMT; SameSite=None,chumewe_sess=1a8ee5ab-fd81-4c67-bd05-9162147eae7c; domain=.matalan.co.uk; secure; path=/; expires=Tue, 01 Oct 2024 04:52:46 GMT; SameSite=None,_qubitTracker=4918ccba-2ccf-44c1-8f33-3c1d284f5b69; domain=.(null); secure; path=/; expires=Wed, 01 Oct 2025 00:52:46 GMT,metric_nonce=a66388d5-9061-4d7f-8aca-b8ffebd2eabb; domain=www.matalan.co.uk; secure; path=/; |
content-security-policy: |
child-src 'self' https://www.googletagmanager.com https://*.liveperson.net https://cdn.appdynamics.com https://*.lpsnmedia.net https://www.facebook.com https://connect.facebook.net https://*.google.com https://widget.trustpilot.com https://*.doubleclick.net https://*.akamaihd.net https://*.translate.naver.net https://www.recaptcha.net https://www.google.com https://*.googlesyndication.com https://www.zenaps.com https://www.youtube.com https://tr.snapchat.com https://tr6.snapchat.com https://www.pinterest.com https://www.pinterest.co.uk https://csxd.contentsquare.net blob: https://app.qubit.com https://*.abtasty.com https://youtube.com https://matalan.hulla-cdn.com https://*.kampyle.com https://*.medallia.eu; connect-src 'self' https://*.thcdn.com https://*.ingest.sentry.io https://*.pingdom.net https://*.doubleclick.net https://*.google-analytics.com https://capture.trackjs.com https://fp.zenaps.com https://www.facebook.com https://*.google.com https://*.thehut.net https://privacyportal-eu.onetrust.com https://geolocation.onetrust.com https://cdn.cookielaw.org wss://*.liveperson.net https://*.liveperson.net https://*.lpsnmedia.net https://the.sciencebehindecommerce.com https://services.postcodeanywhere.co.uk https://*.akamaihd.net https://*.googleapis.com https://*.trustpilot.com https://*.doubleclick.net https://*.bing.com https://connect.facebook.net https://tr.snapchat.com https://ct.pinterest.com https://*.matalan.co.uk https://*.contentsquare.net https://*.prod.mplat-ppcprotect.com https://*.lunio.ai data: https://analytics.tiktok.com https://horizon-api.www.matalan.co.uk https://*.qubit.com https://*.qubitproducts.com https://tr6.snapchat.com https://*.abtasty.com https://*.hulla-cdn.com https://*.kampyle.com https://*.medallia.eu https://www.matalan.co.uk/e2/ds/relay https://horizon-api.www.matalan.co.uk/graphql https://*.ingest.sentry.io https://s1.thcdn.com; default-src https://*.lpsnmedia.net; font-src 'self' data: https://*.thcdn.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://fonts.gstatic.com https://fonts.googleapis.com https://*.kampyle.com https://*.medallia.eu; form-action 'self' https://www.facebook.com https://connect.facebook.net https://tr.snapchat.com https://checkout.matalan.co.uk https://www.matalan.co.uk; frame-ancestors 'self'; img-src 'self' data: https://*.thcdn.com https://col.eum-appdynamics.com https://usage.trackjs.com https://*.lpsnmedia.net https://*.doubleclick.net https://www.google-analytics.com https://*.google.com https://cx.atdmt.com https://www.zenaps.com https:; media-src 'self' https://*.thcdn.com https://*.lpsnmedia.net blob:; object-src 'self' https://*.thcdn.com https://www.youtube.com; report-uri https://csp.thehut.net/cspReport.txt; script-src 'self' 'unsafe-eval' 'unsafe-inline' data: https://*.thcdn.com https://*.thehut.net https://rum-static.pingdom.net https://*.liveperson.net https://*.lpsnmedia.net https://*.doubleclick.net https://static.cdn-apple.com https://*.liveperson.com https://geolocation.onetrust.com https://cdn.cookielaw.org https://cdn.parcellab.com https://the.sciencebehindecommerce.com https://*.akamaihd.net https://*.microsofttranslator.com https://google.com https://*.googlesyndication.com https://*.googleapis.com https://www.recaptcha.net https://connect.facebook.net https://*.trustpilot.com https://www.googleadservices.com https://*.translate.naver.net https://*.doubleclick.net https://*.google.com https://*.google-analytics.com https://fp.zenaps.com https://www.gstatic.com https://bat.bing.com https://www.googletagmanager.com https://www.youtube.com https://s.ytimg.com https://www.dwin1.com https://sc-static.net https://s.pinimg.com https://*.contentsquare.net https://app.contentsquare.com https://*.prod.mplat-ppcprotect.com https://*.lunio.ai https://analytics.tiktok.com https://*.ibytedtos.com https://static.goqubit.com https://*.qubit.com https://tr.snapchat.com https://static.ads-twitter.com https://analytics.twitter.com https://*.abtasty.com https://matalan.hulla-cdn.com https://*.kampyle.com https://*.medallia.eu https://s1.thcdn.com; style-src 'self' 'unsafe-inline' https://*.thcdn.com https://*.google.com https://*.googleapis.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://www.googletagmanager.com https://*.lpsnmedia.net https://*.liveperson.net https://*.googleapis.com https://*.translate.naver.net https://*.microsofttranslator.com https://*.abtasty.com https://matalan.hulla-cdn.com https://*.kampyle.com https://*.medallia.eu https://s1.thcdn.com; upgrade-insecure-requests; report-to report-endpoint; |
x-content-type-options: |
nosniff |
fastly-restarts: |
1 |
date: |
Tue, 01 Oct 2024 00:52:46 GMT |
age: |
262 |
x-served-by: |
cache-lon4279-LON, cache-lon4279-LON, cache-ams21020-AMS |
x-cache: |
MISS, HIT, MISS |
x-cache-hits: |
0, 231, 0 |
x-timer: |
S1727743967.659065,VS0,VE15 |
vary: |
Accept-Encoding, Accept-Encoding |
strict-transport-security: |
max-age=31557600 |
cache-control: |
private, max-age=0, no-cache, no-store, must-revalidate |
alt-svc: |
h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 |
transfer-encoding: |
chunked |
|