date: |
Wed, 02 Oct 2024 16:46:20 GMT |
content-type: |
text/html; charset=UTF-8 |
vary: |
Accept-Encoding |
link: |
|
x-magento-tags: |
store,cms_b,mp_smtp_script,cms_p_27,trespass_banners_banner_13,trespass_banners_banner_15,trespass_banners_banner_29,trespass_banners_banner_30,trespass_banners_banner_31,trespass_banners_banner_32,cat_p_102606,cat_p,cat_p_72902,cat_p_72901,cat_p_67325,cat_p_59673,cat_p_36903,cat_p_120550,cat_p_64804,cat_p_67156,cat_p_59671,cat_p_92177 |
report-to: |
{"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/trespass.report-uri.com\/r\/d\/csp\/reportOnly"}]} |
content-security-policy: |
font-src *.klarnacdn.net *.fontawesome.com *.cloudfront.net *.reviews.io *.reviews.co.uk *.amazonaws.com *.cdn-apple.com data: *.glopal.com *.glopalservice.com *.gocertify.me *.googleapis.com *.google.com google.com *.google.at *.g.doubleclick.net *.googlesyndication.com *.googleadservices.com *.google-analytics.com *.criteo.net *.criteo.com *.gstatic.com *.hotjar.com *.hotjar.io *.icomoon.io *.klarna.com *.klarnaservices.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.retargeted.co smct.co *.smct.co smct.io *.smct.io *.tiktok.com *.worldpay.com *.postrelease.com *.salesfire.co.uk *.yahoo.net *.dmxleo.com *.facebook.net fonts.gstatic.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.amazon.com *.amazon.co.uk *.amazon.co.jp *.amazon.jp *.amazon.it *.amazon.fr *.amazon.es *.amazon.de www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com *.cardinalcommerce.com *.paypal.com *.reviews.io *.reviews.co.uk https://secure-test.worldpay.com/shopper/3ds/ddc.html *.facebook.com *.google.com google.com *.google.at *.g.doubleclick.net *.googlesyndication.com *.googleadservices.com *.google-analytics.com *.criteo.net *.criteo.com *.glopal.com *.glopalservice.com *.klarnacdn.net *.list-manage.com *.pure360.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.retargeted.co *.worldpay.com *.postrelease.com *.salesfire.co.uk *.tiktok.com *.yahoo.net *.dmxleo.com *.facebook.net 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com https://www.google.com/recaptcha/ www.googletagmanager.com *.amazon.com *.amazon.co.uk *.amazon.co.jp *.amazon.jp *.amazon.it *.amazon.fr *.amazon.es *.amazon.de *.payments-amazon.com *.payments-amazon.co.uk *.payments-amazon.co.jp *.payments-amazon.jp *.payments-amazon.it *.payments-amazon.fr *.payments-amazon.es *.payments-amazon.de www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com *.klarna.com c.paypal.com checkout.paypal.com assets.braintreegateway.com pay.google.com *.cardinalcommerce.com *.paypal.com *.reviews.io *.reviews.co.uk https://pay.google.com https://secure-test.worldpay.com scripts.affiliatefuture.com *.amazonaws.com *.arcot.com *.bsmartdata.com *.cloudfront.net *.doubleclick.net *.facebook.com *.glopal.com *.glopalservice.com *.gocertify.me *.google.com google.com *.google.at *.g.doubleclick.net *.googlesyndication.com *.googleadservices.com *.google-analytics.com *.criteo.net *.criteo.com *.hotjar.com *.hotjar.io *.icomoon.io *.klarnacdn.net *.klarnaservices.com *.list-manage.com *.official-coupons.com *.paypalobjects.com *.playground.klarnaservices.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.retargeted.co *.salesfire.co.uk senior.discount smct.co *.smct.co smct.io *.smct.io *.soreto.com connect.studentbeans.com *.studentbeans.com *.tradedoubler.com *.tiktok.com *.veinteractive.com *.vimeo.com *.worldpay.com *.youthdiscount.com *.postrelease.com *.yahoo.net *.dmxleo.com *.facebook.net *.trustpilot.com *.weltpixel.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.googleadservices.com *.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com validator.swagger.io d3sbl0c71oxeok.cloudfront.net dhkkzdfmpzvap.cloudfront.net d2bpzs5y44q6e0.cloudfront.net d37shgu97oizpd.cloudfront.net d1zlqll3enr74n.cloudfront.net d1jynp0fpwn93a.cloudfront.net d2cb3tokgpwh3v.cloudfront.net d1re8bfxx3pw6e.cloudfront.net d35u8xwkxs8vpe.cloudfront.net d13s9xffygp5o.cloudfront.net d388nbw0dwi1jm.cloudfront.net d11p2vtu3dppaw.cloudfront.net d3r89hiip86hka.cloudfront.net dc7snq0c8ipyk.cloudfront.net d5c7kvljggzso.cloudfront.net d2h8yg3ypfzua1.cloudfront.net d1b556x7apj5fb.cloudfront.net draz1ib3z71v2.cloudfront.net dr6hdp4s5yzfc.cloudfront.net d2bomicxw8p7ii.cloudfront.net d3aypcdgvjnnam.cloudfront.net d2a3iuf10348gy.cloudfront.net d23yuld0pofhhw.cloudfront.net *.ssl-images-amazon.com *.ssl-images-amazon.co.uk *.ssl-images-amazon.co.jp *.ssl-images-amazon.jp *.ssl-images-amazon.it *.ssl-images-amazon.fr *.ssl-images-amazon.es *.ssl-images-amazon.de *.media-amazon.com *.media-amazon.co.uk *.media-amazon.co.jp *.media-amazon.jp *.media-amazon.it *.media-amazon.fr *.media-amazon.es *.media-amazon.de static-eu.payments-amazon.com www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com *.klarna.com *.klarnaevt.com *.klarnacdn.net www.sandbox.paypal.com b.stats.paypal.com dub.stats.paypal.com assets.braintreegateway.com c.paypal.com checkout.paypal.com *.paypal.com *.cloudfront.net *.reviews.io *.reviews.co.uk *.cloudflare.com *.gstatic.com www.google-analytics.com *.t-pass.co.uk *.adnxs.com *.adroll.com *.amazonaws.com *.bidswitch.net *.bing.com *.clarity.ms *.criteo.net *.criteo.com *.doubleclick.net eep.io *.eep.io *.facebook.com *.glopal.com *.glopalservice.com *.gocertify.me *.google.com *.google.co.uk *.googleadservices.com googletagmanager.com *.googlesyndication.com google.com *.google.at *.g.doubleclick.net *.hotjar.com *.hotjar.io *.icomoon.io img-statics.com *.klarnaservices.com *.official-coupons.com *.official-deals.co.uk *.onetrust.com *.openx.net *.payments-amazon.com *.playground.klarnaservices.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.salesfire.co.uk smct.co *.smct.co smct.io *.smct.io *.soreto.com www.uploadlibrary.com *.volvelle.tech *.yahoo.com *.ytimg.com *.media.net *.rubiconproject.com *.sharethrough.com *.smartadserver.com *.taboola.com *.teads.tv *.3lift.com *.adform.net *.omnitagjs.com *.casalemedia.com id5-sync.com *.360yield.com *.ivitrack.com *.mediavine.com *.outbrain.com *.pubmatic.com *.tremorhub.com *.tiktok.com *.yieldlab.net *.yieldmo.com *.emxdgt.com *.krxd.net *.thebrighttag.com *.postrelease.com *.revcontent.com *.retargeted.co *.yahoo.net *.dmxleo.com *.facebook.net www.googletagmanager.com googleads.g.doubleclick.net ssl.gstatic.com www.gstatic.com maps.gstatic.com maps.googleapis.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com *.google-analytics.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com https://www.gstatic.com/recaptcha/ *.google.com www.googletagmanager.com www.google-analytics.com *.payments-amazon.com *.payments-amazon.co.uk *.payments-amazon.co.jp *.payments-amazon.jp *.payments-amazon.it *.payments-amazon.fr *.payments-amazon.es *.payments-amazon.de www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com widget.freshworks.com m2epro.freshdesk.com *.klarna.com *.klarnacdn.net *.klarnaservices.com *.avada.io js.braintreegateway.com assets.braintreegateway.com c.paypal.com pay.google.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.paypal.com *.reviews.io *.reviews.co.uk https://www.google.com/recaptcha/api.js *.gstatic.com *.cloudflare.com https://pay.google.com/gp/p/js/pay.js https://applepay.cdn-apple.com/jsapi/v1/apple-pay-sdk.js https://payments.worldpay.com/resources/cse/js/worldpay-cse-1.0.2.min.js tags.affiliatefuture.com scripts.affiliatefuture.com *.adroll.com *.amazonaws.com *.atdmt.com *.bing.com chimpstatic.com *.chimpstatic.com *.clarity.ms *.cloudfront.net *.criteo.net *.criteo.com *.consensu.org data: *.doubleclick.net *.ethn.io *.facebook.com *.facebook.net *.freshrelevance.com *.glopal.com *.glopalservice.com *.gocertify.me google.com google-analytics.com *.googleoptimize.com *.analytics.google.com *.googlesyndication.com *.googleadservices.com *.googleapis.com *.google.at *.g.doubleclick.net *.hotjar.com *.hotjar.io *.icomoon.io *.newrelic.com *.nr-data.net *.onetrust.com *.oribi.io *.playground.klarnaservices.com *.referralcandy.com *.revlifter.io reporting.trespass.com reporting.nevisport.com *.salesfire.co.uk senior.discount smct.co *.smct.co smct.io *.smct.io *.soreto.com cdn.studentbeans.com *.tradedoubler.com *.veinteractive.com *.worldpay.com wss://*.freshrelevance.com *.media.net *.rubiconproject.com *.sharethrough.com *.smartadserver.com *.taboola.com *.teads.tv *.tiktok.com *.3lift.com *.adform.net *.omnitagjs.com *.casalemedia.com id5-sync.com *.360yield.com *.ivitrack.com *.mediavine.com *.outbrain.com *.pubmatic.com *.tremorhub.com *.yieldlab.net *.yieldmo.com *.emxdgt.com *.krxd.net *.thebrighttag.com *.postrelease.com *.retargeted.co *.yahoo.net *.dmxleo.com googletagmanager.com ssl.google-analytics.com tagmanager.google.com maps.googleapis.com *.trustpilot.com https://www.googletagmanager.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com widget.freshworks.com m2epro.freshdesk.com *.klarnacdn.net *.fontawesome.com unsafe-inline *.cloudfront.net *.reviews.io *.reviews.co.uk *.cloudflare.com data: *.glopal.com *.glopalservice.com *.gocertify.me *.google.com fonts.googleapis.com *.google.at *.g.doubleclick.net *.googlesyndication.com *.googleadservices.com *.google-analytics.com *.criteo.net *.criteo.com *.icomoon.io *.klarna.com *.klarnaservices.com *.playground.klarnaservices.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.retargeted.co smct.co *.smct.co smct.io *.smct.io *.worldpay.com *.postrelease.com *.salesfire.co.uk *.tiktok.com *.yahoo.net *.dmxleo.com *.facebook.net tagmanager.google.com *.trustpilot.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.google-analytics.com vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.amazon.com *.amazon.co.uk *.amazon.co.jp *.amazon.jp *.amazon.it *.amazon.fr *.amazon.es *.amazon.de *.amazonpay.com *.amazonpay.co.uk *.amazonpay.co.jp *.amazonpay.jp *.amazonpay.it *.amazonpay.fr *.amazonpay.es *.amazonpay.de mws.amazonservices.com mws.amazonservices.co.uk mws.amazonservices.co.jp mws.amazonservices.jp mws.amazonservices.it mws.amazonservices.fr mws.amazonservices.es mws.amazonservices.de www.apptrian.com facebook.com www.facebook.com connect.facebook.net graph.facebook.com widget.freshworks.com m2epro.freshdesk.com *.klarnaevt.com *.klarnacdn.net *.klarna.com *.klarnaservices.com https://get.geojs.io *.avada.io api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.braintree-api.com *.paypal.com *.cloudfront.net *.reviews.io *.reviews.co.uk *.amazonaws.com *.appspot.com *.atdmt.com *.bing.com *.clarity.ms *.criteo.net *.criteo.com *.doubleclick.net *.dycdn.net *.freshrelevance.com *.glopal.com *.glopalservice.com *.gocertify.me *.hotjar.com:* *.hotjar.io:* *.icomoon.io *.klarnauserservices.com *.googleapis.com *.google.com pay.google.com google.com *.google.at *.g.doubleclick.net *.analytics.google.com *.google-analytics.com *.googlesyndication.com *.googleadservices.com *.nr-data.net *.onetrust.com *.playground.klarnaservices.com *.playground.klarnauserservices.com *.pure360.com *.pvnsolutions.com *.referralcandy.com reporting.trespass.com reporting.nevisport.com *.revlifter.com *.retargeted.co *.salesfire.co.uk senior.discount smct.co *.smct.co smct.io *.smct.io *.smartmetrics.co.uk https://*.soreto.com *.tiktok.com *.veinteractive.com wss://*.freshrelevance.com wss://*.hotjar.com *.postrelease.com *.yahoo.net *.dmxleo.com *.facebook.net google-analytics.com https://www.google-analytics.com 'self' 'unsafe-inline'; child-src assets.braintreegateway.com c.paypal.com *.paypal.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://trespass.report-uri.com/r/d/csp/reportOnly; report-to report-endpoint; |
x-content-type-options: |
nosniff |
x-xss-protection: |
1; mode=block |
x-frame-options: |
SAMEORIGIN |
magestack-tag: |
Dynamic |
magestack-area: |
Frontend |
magestack-loadbalancer: |
149.86.99.251 |
magestack-magento-version: |
2 |
magestack-debug: |
true |
magestack-last-modified: |
true |
magestack-config: |
global |
magestack-web-node: |
web1 |
magestack-cacheable: |
Yes |
magestack-cache-status: |
200 |
magestack-cache-lifetime: |
86400.000 |
magestack-cache-warning: |
Refusing to overwrite response TTL for Magento 2 |
last-modified: |
Wed, 02 Oct 2024 16:46:20 GMT |
magestack-pagespeed: |
false |
pragma: |
no-cache |
expires: |
-1 |
cache-control: |
no-store, no-cache, must-revalidate, max-age=0 |
magestack-cache-hits: |
268 |
magestack-cache: |
Hit |
accept-ranges: |
bytes |
transfer-encoding: |
chunked |
connection: |
close |
strict-transport-security: |
max-age=0 |
set-cookie: |
visid_incap_783368=3Jh+5R43S6GiPLNXvNr72s6u/WYAAAAAQUIPAAAAAADj3VoOFND+TQIaXW6UmEV+; expires=Thu, 02 Oct 2025 16:40:31 GMT; HttpOnly; path=/; Domain=.nevisport.com,incap_ses_1807_783368=zCIaQrYaKyEoF4S6DcETGc+u/WYAAAAAO8ys1cS1fdj52ilTI6UZHg==; path=/; Domain=.nevisport.com |
x-cdn: |
Imperva |
x-iinfo: |
7-11021055-11021059 NNNN CT(125 129 0) RT(1727901390406 120) q(0 0 2 0) r(4 5) U12 |
|