date: |
Fri, 04 Oct 2024 22:45:52 GMT |
content-type: |
text/html; charset=utf-8 |
transfer-encoding: |
chunked |
connection: |
close |
cf-ray: |
8cd8b46d0e861c7e-AMS |
cf-cache-status: |
HIT |
cache-control: |
max-age=7200, must-revalidate |
last-modified: |
Thu, 26 Sep 2024 13:56:21 GMT |
strict-transport-security: |
max-age=31536000; includeSubdomains; preload |
vary: |
Accept-Encoding,X-Forwarded-Host |
via: |
1.1 varnish, 1.1 varnish, 1.1 varnish |
cdn-cache-control: |
max-age=172800, must-revalidate |
content-security-policy: |
media-src 'self' *.brightcovecdn.com *.media.brightcove.com blob: film.vev.design house-fastly-signed-eu-west-1-prod.brightcovecdn.com js.intercomcdn.com manifest.prod.boltdns.net secure.brightcove.com/services/mobile/streaming webfiles.digitalpfizer.com; connect-src 'self' *.brightcove.com *.brightcove.net *.brightcovecdn.com *.cloudfront.net *.contentsquare.net *.demdex.net *.digitalpfizer.com *.doctor.com *.force.com *.franklin.edison.pfizer *.hapyak.com *.hlx.reviews/admin/ *.hotjar.com *.hotjar.io *.salesforce-sites.com *.salesforce.com *.salesforceliveagent.com *.web.pfizer *.worker.pfizer activitymap.adobe.com admin.hlx.page analytics-api.fireflyxdservices.com analytics.pmsrv.co analytics.tiktok.com api-iam.intercom.io api.neverbounce.com assets.adobedtm.com bat.bing.com brightcove.hs.llnwd.net c.pmsrv.co cdn.cookielaw.org cdn.jsdelivr.net cdn.neverbounce.com cdn.pdst.fm cdn.vev.design code.jquery.com connect.facebook.net conversions-config.reddit.com det-ms-config-manager.s3.amazonaws.com/ directory-service.consumerism.pressganey.com directory-service.ls.consumerism.pressganey.com dpm.demdex.net edge.adobedc.net einstein-cdn-dev.pfizer.com einstein-cdn-stage.pfizer.com einstein-cdn.pfizer.com embded.vev.page embed.vev.page firefly-api.fireflyxdservices.com fireflyxdservices.com fm.populus-media.net geoip-js.com geolocation.onetrust.com/ googleads.g.doubleclick.net googletagmanager.com helix-pages.anywhere.run interactive.digitalpfizer.com js.adsrvr.org js.intercomcdn.com js.vev.design manifest.prod.boltdns.net maps.googleapis.com pfizer-privacy.my.onetrust.com/ pfizer.cloudflareaccess.com pfizer.sc.omtrdc.net player.interactivity.brightcove.com players.brightcove.net resources.digital-cloud.medallia.eu rum.hlx.live/.rum. rum.hlx.page/.rum/ s.yimg.com smetrics.nurtec.com static.ads-twitter.com stats.g.doubleclick stats.g.doubleclick.net t.contentsquare.net tagmanager.google.com udc-neb.kampyle.com uploads.interactivity.brightcove.com uploads.intercomcdn.com us-central1-adaptive-growth.cloudfunctions.net vjs.zencdn.net widget.doctor.com widget.intercom.io wss: www.aem.live www.doctor.com www.google-analytics.com www.google.com www.hlx.live www.interactivemanager.pfizer www.redditstatic.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.cloudfront.net *.cloudfront.net/js/hapyak.js *.digitalpfizer.com *.dotomi.com *.force.com *.franklin.edison.pfizer *.hotjar.com *.salesforce-sites.com *.salesforce.com *.salesforceliveagent.com activitymap.adobe.com activitymap.adobe.com/sc15/activitymap/ aim-tag.hcn.health/js/ analytics-api.fireflyxdservices.com analytics.pmsrv.co analytics.tiktok.com api.neverbounce.com assets.adobedtm.com bat.bing.com c.evidon.com c.pmsrv.co cdn.cookielaw.org cdn.jsdelivr.net cdn.neverbounce.com cdn.neverbounce.com/widget/dist/NeverBounce.js cdn.pdst.fm cdn.vev.design code.jquery.com connect.facebook.net einstein-cdn-dev.pfizer.com einstein-cdn-stage.pfizer.com einstein-cdn.pfizer.com embded.vev.page evidon.com firefly-api.fireflyxdservices.com fireflyxdservices.com fm.populus-media.net geoip-js.com geolocation.onetrust.com geolocation.onetrust.com/ helix-pages.anywhere.run interactive.digitalpfizer.com js.adsrvr.org js.adsrvr.org/ js.intercomcdn.com js.intercomcdn.com/ js.vev.design maps.googleapis.com player.interactivity.brightcove.com player.interactivity.brightcove.com/ players.brightcove.net resources.digital-cloud.medallia.eu rum.hlx.live rum.hlx.live/.rum/ rum.hlx.page rum.hlx.page/.rum/ s.yimg.com sdc-ibfw-portal.pfizer.com sdc-ibfw-portal.pfizer.com:6082 static.ads-twitter.com t.contentsquare.net vjs.zencdn.net widget.doctor.com widget.intercom.io widget.intercom.io/ www.aem.live/tools/sidekick/library/ www.google-analytics.com www.google.com www.googletagmanager.com www.gstatic.com www.hlx.live/tools/sidekick/library/ www.interactivemanager.pfizer www.redditstatic.com www.youtube.com www.youtube.com/iframe_api; frame-src 'self' *.doctor.com *.fls.doubleclick.net *.force.com *.hapyak-hosted.com *.hapyak.com *.salesforce.com activitymap.adobe.com/sc15/activitymap/ aim-tag.hcn.health/ fast.pfizer.demdex.net forms.office.com global.acs.prismaaccess.com hapyak-assets.s3.amazonaws.com insight.adsrvr.org interactive.digitalpfizer.com interactivity-uploads.s3.us-east-1.amazonaws.com/ intercom-sheets.com l3.evidon.com pdi.doctor.com pfizer.demdex.net players.brightcove.net read.marvel.com resources.digital-cloud.medallia.eu td.doubleclick.net/ uploads.interactivity.brightcove.com web.microsoftstream.com webfiles.digitalpfizer.com webfiles.pfizer.com www.google.com www.interactivemanager.pfizer www.medtargetsystem.com/ www.youtube.com; img-src 'self' *.brightcovecdn.com blob: data: https:; default-src 'none'; style-src 'self' 'unsafe-inline' https:; font-src 'self' data: https:; frame-ancestors 'self' *.hapyak.com pfizer.cloudflareaccess.com pfizer.sharepoint.com; object-src 'self' players.brightcove.net; worker-src 'self' blob: unsafe-eval unsafe-inline; report-uri https://pfeprod.report-uri.com/r/t/csp/enforce |
referrer-policy: |
same-origin |
surrogate-key: |
v93--nurteccom--pfizer 4et-Q9Mn8QhfyA6t 9683c9185bb894e1fc22b112d2aaf57d65c6a8e07fc4e53f061e389be12_metadata v93--nurteccom--pfizer_head 9683c9185bb894e1fc22b112d2aaf57d65c6a8e07fc4e53f061e389be12 |
x-cache: |
MISS, HIT, MISS |
x-cache-hits: |
0, 3, 0 |
x-content-type-options: |
nosniff |
x-edison-type: |
Adobe |
x-frame-options: |
SAMEORIGIN |
x-franklin-ref: |
v93 |
x-served-by: |
cache-iad-kcgs7200068-IAD, cache-iad-kcgs7200068-IAD, cache-par-lfpg1960064-PAR |
x-timer: |
S1727775917.932901,VS0,VE157 |
x-xss-protection: |
1; mode=block |
set-cookie: |
__cf_bm=h81yTRw4aKoAAUDaqT.QfEYyCtOSQIiyro0aHdOz15o-1728081952-1.0.1.1-eAUTSQOr7dGQii6_5nzJ5cOurwXB5nI1iAFzztxFezKdBpV2kUvGXJ8APB8LqaICtlRY71p7nDIccXjcunGLxw; path=/; expires=Fri, 04-Oct-24 23:15:52 GMT; domain=.nurtec.com; HttpOnly; Secure; SameSite=None,__cfruid=946746930ab5d8f0c1f450a2728404af07b42e4e-1728081952; path=/; domain=.nurtec.com; HttpOnly; Secure; SameSite=None,_cfuvid=Xv9DxuI09Mdoq16YWWULLrOJ0PkXI.Ik.Wqd09Bgnjc-1728081952956-0.0.1.1-604800000; path=/; domain=.nurtec.com; HttpOnly; Secure; SameSite=None |
server: |
cloudflare |