date: |
Sat, 05 Oct 2024 15:02:47 GMT |
content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
cf-ray: |
8cde4b728e9e1cae-AMS |
cf-cache-status: |
DYNAMIC |
cache-control: |
no-store, no-cache, must-revalidate |
expires: |
Thu, 19 Nov 1981 08:52:00 GMT |
link: |
<https://thetanningshop.co.uk/wp-json/>; rel="https://api.w.org/", <https://thetanningshop.co.uk/wp-json/wp/v2/pages/2279942>; rel="alternate"; title="JSON"; type="application/json" |
strict-transport-security: |
max-age=31536000; includeSubDomains; preload |
vary: |
Accept-Encoding |
pragma: |
no-cache |
access-control-allow-credentials: |
true |
content-security-policy: |
report-uri https://965e44c24aa117ace03d5bac50cc907c.report-uri.com/r/d/csp/reportOnly; report-to default; child-src 'self' ; connect-src 'self' *.wepowerconnections.com *.sciencebehindecommerce.com *.bing.com *.googleapis.com *.google-analytics.com *.google.co.uk *.googletagmanager.com *.wpengine.com yoast.com *.google.com *.doubleclick.net *.azurewebsites.net *.googlesyndication.com *.cookieyes.com cdn-cookieyes.com *.facebook.net *.facebook.com data: wss://am.freshrelevance.com *.freshrelevance.com *.sagepay.com *.elegantthemes.com ; default-src 'self' ; font-src 'self' *.honey.io *.gstatic.com *.bootstrapcdn.com data: application/x-font-woff *.bunny.net *.jsdelivr.net ; form-action 'self' *.rsa3dsauth.co.uk *.revolut.com *.monzo.com *.arcot.com *.cardinalcommerce.com *.facebook.com *.sagepay.com *.modirum.com *.apata.io *.sumup.com *.marqeta.com; frame-src 'self' *.googletagmanager.com *.youtube.com *.google.com *.vimeo.com *.facebook.com *.doubleclick.net blob: *.doubleclick.net *.awin1.com *.spotify.com ; frame-ancestors 'self' ; img-src 'self' https://thetanningshop.webpower.eu https://app.squeezely.tech https://t.squeezely.tech *.g.doubleclick.net *.wp.com *.facebook.net *.youtube.com *.googleapis.com *.googletagmanager.com *.w.org *.gravatar.com *.google.com *.google.ie *.google-analytics.com *.gstatic.com data: w3.org/svg/2000 blob: data *.vimeocdn.com *.google.co.uk *.facebook.com *.zenaps.com *.awin1.com *.cookieyes.com cdn-cookieyes.com *.ytimg.com *.bing.com *.w.org goo.gl *.perfmatters.io *.ggpht.com ; manifest-src 'self' ; media-src 'self' *.w.org data ; object-src 'self' ; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.awin1.com *.bing.com *.sciencebehindecommerce.com *.g.doubleclick.net *.google-analytics.com *.google.com *.googleapis.com *.cloudflare.com *.youtube.com *.facebook.net *.cloudfront.net *.bootstrapcdn.com *.dwin1.com *.googletagmanager.com *.gstatic.com *.cookieyes.com cdn-cookieyes.com *.jsdelivr.net *.sagepay.com *.googleadservices.com; script-src-elem 'self' 'unsafe-inline' https://squeezely.tech *.googleadservices.com *.sciencebehindecommerce.com *.g.doubleclick.net *.google-analytics.com *.google.com *.googleapis.com *.cloudflare.com *.youtube.com *.facebook.net *.cloudfront.net *.bootstrapcdn.com *.dwin1.com *.awin1.com *.googletagmanager.com *.gstatic.com *.jsdelivr.net *.cookieyes.com cdn-cookieyes.com *.bing.com *.sagepay.com ; script-src-attr 'self' 'unsafe-inline' ; style-src 'self' 'unsafe-inline' *.googleapis.com *.jsdelivr.net *.cloudflare.com *.bootstrapcdn.com *.gstatic.com *.bunny.net ; style-src-elem 'self' 'unsafe-inline' *.arwin1.com *.honey.io *.sciencebehindecommerce.com *.googleadservices.com *.bootstrapcdn.com *.googleapis.com *.cloudflare.com *.jsdelivr.net *.bunny.net *.gstatic.com ; style-src-attr 'self' 'unsafe-inline' ; worker-src 'self' blob:; |
ki-cache-type: |
None |
ki-cf-cache-status: |
BYPASS |
ki-edge: |
v=20.2.8;mv=3.1.2 |
ki-origin: |
g1p |
referrer-policy: |
strict-origin-when-cross-origin |
report-to: |
{"group":"default","max_age":31536000,"endpoints":[{"url":"https://965e44c24aa117ace03d5bac50cc907c.report-uri.com/a/d/g"}],"include_subdomains":true} |
x-content-security-policy: |
report-uri https://965e44c24aa117ace03d5bac50cc907c.report-uri.com/r/d/csp/reportOnly; report-to default; child-src 'self' ; connect-src 'self' *.wepowerconnections.com *.sciencebehindecommerce.com *.bing.com *.googleapis.com *.google-analytics.com *.google.co.uk *.googletagmanager.com *.wpengine.com yoast.com *.google.com *.doubleclick.net *.azurewebsites.net *.googlesyndication.com *.cookieyes.com cdn-cookieyes.com *.facebook.net *.facebook.com data: wss://am.freshrelevance.com *.freshrelevance.com *.sagepay.com *.elegantthemes.com ; default-src 'self' ; font-src 'self' *.honey.io *.gstatic.com *.bootstrapcdn.com data: application/x-font-woff *.bunny.net *.jsdelivr.net ; form-action 'self' *.rsa3dsauth.co.uk *.revolut.com *.monzo.com *.arcot.com *.cardinalcommerce.com *.facebook.com *.sagepay.com *.modirum.com *.apata.io *.sumup.com *.marqeta.com; frame-src 'self' *.googletagmanager.com *.youtube.com *.google.com *.vimeo.com *.facebook.com *.doubleclick.net blob: *.doubleclick.net *.awin1.com *.spotify.com ; frame-ancestors 'self' ; img-src 'self' https://thetanningshop.webpower.eu https://app.squeezely.tech https://t.squeezely.tech *.g.doubleclick.net *.wp.com *.facebook.net *.youtube.com *.googleapis.com *.googletagmanager.com *.w.org *.gravatar.com *.google.com *.google.ie *.google-analytics.com *.gstatic.com data: w3.org/svg/2000 blob: data *.vimeocdn.com *.google.co.uk *.facebook.com *.zenaps.com *.awin1.com *.cookieyes.com cdn-cookieyes.com *.ytimg.com *.bing.com *.w.org goo.gl *.perfmatters.io *.ggpht.com ; manifest-src 'self' ; media-src 'self' *.w.org data ; object-src 'self' ; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.awin1.com *.bing.com *.sciencebehindecommerce.com *.g.doubleclick.net *.google-analytics.com *.google.com *.googleapis.com *.cloudflare.com *.youtube.com *.facebook.net *.cloudfront.net *.bootstrapcdn.com *.dwin1.com *.googletagmanager.com *.gstatic.com *.cookieyes.com cdn-cookieyes.com *.jsdelivr.net *.sagepay.com *.googleadservices.com; script-src-elem 'self' 'unsafe-inline' https://squeezely.tech *.googleadservices.com *.sciencebehindecommerce.com *.g.doubleclick.net *.google-analytics.com *.google.com *.googleapis.com *.cloudflare.com *.youtube.com *.facebook.net *.cloudfront.net *.bootstrapcdn.com *.dwin1.com *.awin1.com *.googletagmanager.com *.gstatic.com *.jsdelivr.net *.cookieyes.com cdn-cookieyes.com *.bing.com *.sagepay.com ; script-src-attr 'self' 'unsafe-inline' ; style-src 'self' 'unsafe-inline' *.googleapis.com *.jsdelivr.net *.cloudflare.com *.bootstrapcdn.com *.gstatic.com *.bunny.net ; style-src-elem 'self' 'unsafe-inline' *.arwin1.com *.honey.io *.sciencebehindecommerce.com *.googleadservices.com *.bootstrapcdn.com *.googleapis.com *.cloudflare.com *.jsdelivr.net *.bunny.net *.gstatic.com ; style-src-attr 'self' 'unsafe-inline' ; worker-src 'self' blob:; |
x-content-type-options: |
nosniff |
x-edge-location-klb: |
1 |
x-frame-options: |
DENY |
x-kinsta-cache: |
HIT |
x-permitted-cross-domain-policies: |
none |
x-xss-protection: |
1; mode=block |
server: |
cloudflare |