access-control-allow-origin: |
* |
age: |
17388 |
alt-svc: |
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000 |
cache-control: |
max-age=1800, public, s-maxage=86400 |
content-language: |
fr |
content-security-policy-report-only: |
default-src 'self' *.doubleclick.net try.abtasty.com get.geojs.io; child-src 'self' blob:; connect-src 'self' cdn.cookielaw.org maps.googleapis.com *.googletagmanager.com *.cedexis.com *.google-analytics.com *.contentsquare.net connect.facebook.net resources.xg4ken.com *.tradelab.fr ib.adnxs.com *.googleadservices.com ad.avtm.fr *.google.com.ua *.cardinalcommerce.com *.online-metrix.net *.fastlylb.net *.facebook.com *.execute-api.us-east-1.amazonaws.com *.google.nl *.metaffiliation.com *.wonderpush.com *.analytics.google.com googleads.g.doubleclick.net static.criteo.net *.criteo.com *.internetpluspro.orange-business.com *.cedexis-radar.net *.google.com *.doubleclick.net *.abtasty.com ipinfo.io *.gstatic.com *.usabilla.com a-cedexis.msedge.net *.onetrust.com *.fastlyb.net swrap.tradedoubler.com sgtm.adagio-city.com *.pinterest.com s.pinimg.com get.geojs.io analytics.tiktok.com *.nr-data.net *.posthog.com *.us-east-1.amazonaws.com *.kontorolabs.com *.alphalyr.com https://www.google-analytics.com https://www.googletagmanager.com; font-src *; frame-src 'self' *.wpc.alphacdn.net *.cedexis-test.com *.doubleclick.net *.criteo.com static.addtoany.com *.google.com *.youtube.com my.matterport.com *.citrix-itm-test.com *.internetpluspro.orange-business.com *.azioncdn.net *.facebook.com *.criteo.net *.fbcdn.net *.citm-test.com *.cardinalcommerce.com *.online-metrix.net *.bitgravity.com cedexis-test.gcorelabs.com *.contentsquare.net csxd.all.accor.com csxd.mag-adagio.com ct.pinterest.com s.pinimg.com *.adagio-city.com; img-src * data:; media-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' 'wasm-unsafe-eval' adagio.nonce cdn.cookielaw.org maps.googleapis.com *.googletagmanager.com *.cedexis.com *.google-analytics.com ssl.google-analytics.com *.contentsquare.net connect.facebook.net resources.xg4ken.com *.tradelab.fr ib.adnxs.com *.googleadservices.com googleads.g.doubleclick.net *.criteo.net *.criteo.com *.internetpluspro.orange-business.com *.cedexis-radar.net *.google.com *.doubleclick.net *.abtasty.com ipinfo.io *.gstatic.com *.usabilla.com a-cedexis.msedge.net *.onetrust.com *.fastlyb.net swrap.tradedoubler.com ad.avtm.fr *.google.com.ua *.google.de *.cardinalcommerce.com *.elitrack.com *.metaffiliation.com *.wonderpush.com ct.pinterest.com s.pinimg.com tck.alphalyr.com https://cdn.jsdelivr.net https://github.com https://static.addtoany.com https://try.abtasty.com staticaws.fbwebprogram.com; script-src-attr 'self' 'unsafe-inline' 'unsafe-hashes'; script-src-elem 'self' 'unsafe-inline' cdn.cookielaw.org maps.googleapis.com *.googletagmanager.com *.cedexis.com *.google-analytics.com *.contentsquare.net connect.facebook.net resources.xg4ken.com *.tradelab.fr ib.adnxs.com *.googleadservices.com googleads.g.doubleclick.net *.criteo.net *.criteo.com *.internetpluspro.orange-business.com *.cedexis-radar.net *.google.com *.doubleclick.net *.abtasty.com ipinfo.io *.gstatic.com *.usabilla.com a-cedexis.msedge.net *.onetrust.com *.fastlyb.net swrap.tradedoubler.com ad.avtm.fr *.google.com.ua *.cardinalcommerce.com *.online-metrix.net *.quantserve.com *.quantcount.com *.elitrack.com *.metaffiliation.com *.wonderpush.com s.pinimg.com cdn.jsdelivr.net try.adtasty.com *.adagio-city.com analytics.tiktok.com *.posthog.com ct.pinterest.com bat.bing.com tck.alphalyr.com https://cdn.jsdelivr.net https://github.com https://static.addtoany.com https://try.abtasty.com staticaws.fbwebprogram.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com https://cdn.jsdelivr.net; style-src-attr 'self' 'unsafe-inline' 'unsafe-hashes'; style-src-elem * 'unsafe-inline'; frame-ancestors 'self' |
content-type: |
text/html; charset=UTF-8 |
date: |
Tue, 01 Oct 2024 12:11:05 GMT |
expires: |
Sun, 19 Nov 1978 05:00:00 GMT |
last-modified: |
Tue, 01 Oct 2024 07:21:17 GMT |
return_x_ocdn_ja3: |
a685258a6b9efe7d51633cf248ba2c83 |
server: |
ECAcc (ama/48A1) |
strict-transport-security: |
max-age=31536000; includeSubDomains; preload |
surrogate-control: |
no-store, content="BigPipe/1.0" |
vary: |
Accept-Encoding |
x-accel-buffering: |
no |
x-cache: |
HIT |
x-content-type-options: |
nosniff, nosniff |
x-drupal-dynamic-cache: |
MISS |
x-frame-options: |
SAMEORIGIN |
x-ocdn-cookie: |
seo_sea |
x-ocdn-net: |
EUNL58061 |
x-ocdn-rp: |
HTTP/1.1 |
content-length: |
946798 |
connection: |
close |