accept-ranges: |
bytes |
access-control-allow-origin: |
* |
age: |
10288 |
cache-control: |
public, max-age=0, must-revalidate |
content-disposition: |
inline |
content-length: |
180628 |
content-security-policy-report-only: |
connect-src 'self' *.s3.eu-west-1.amazonaws.com api.locize.app *.cookiepro.com *.hubspot.com forms.hscollectedforms.net forms.hsforms.com www.youtube.com www.youtube-nocookie.com i.ytimg.com https://api.atelierdeschefs.fr www.google.com apis.google.com *.googleapis.com *.firebaseapp.com checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com checkout.getalma.eu api.getalma.eu https://cdn.jsdelivr.net hooks.stripe.com geolocation.onetrust.com *.google-analytics.com connect.facebook.net www.facebook.com bat.bing.com googleads.g.doubleclick.net www.googleadservices.com *.google.com analytics.tiktok.com *.doubleclick.net *.wlp-acs.com *.monext.fr *.cic.fr *.creditmutuel.fr *.marqeta.com *.secure.lcl.fr 3ds.redsys.es vercel.live checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.hs-scripts.com js.hs-analytics.net js.hs-banner.com js.hscollectedforms.net js.usemessages.com track.hubspot.com js.hsleadflows.net www.googletagmanager.com *.cookiepro.com www.youtube.com www.youtube-nocookie.com i.ytimg.com www.google.com apis.google.com *.googleapis.com checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com checkout.getalma.eu api.getalma.eu https://cdn.jsdelivr.net hooks.stripe.com geolocation.onetrust.com *.google-analytics.com connect.facebook.net www.facebook.com bat.bing.com googleads.g.doubleclick.net www.googleadservices.com *.google.com analytics.tiktok.com *.doubleclick.net *.wlp-acs.com *.monext.fr *.cic.fr *.creditmutuel.fr *.marqeta.com *.secure.lcl.fr 3ds.redsys.es vercel.live *.gstatic.com; style-src 'self' 'unsafe-inline'; img-src 'self' blob: data: *.hubspot.com forms.hscollectedforms.net forms.hsforms.com *.cookiepro.com www.googletagmanager.com www.youtube.com www.youtube-nocookie.com i.ytimg.com purecatamphetamine.github.io dxpulwm6xta2f.cloudfront.net d165zz1olxm90a.cloudfront.net *.s3.eu-west-1.amazonaws.com checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com connect.facebook.net www.facebook.com bat.bing.com www.google-analytics.com googleads.g.doubleclick.net https://translate.google.com *.google.com *.google.ie *.google.fr *.google.be *.google.ca *.google.ch *.google.tn *.google.dz *.google.co.uk *.google.es *.google.lu *.google.de *.google.sn *.google.ci *.google.co.il *.google.mg *.google.it *.google.pt *.google.com.mx *.google.com.ma *.google.mu *.google.nl *.google.com.au *.google.com.br *.google.co.th *.google.co.ma *.google.cm *.google.ae *.google.co.jp *.google.cd *.google.com.lb *.google.ga *.google.ad *.google.co.nz *.google.sk *.google.com.tr *.google-analytics.com googleads.g.doubleclick.net www.googleadservices.com *.google.com *.gstatic.com; font-src 'self' data: fonts.atelierdeschefs.fr at.alicdn.com fonts.gstatic.com github.com; object-src data:; base-uri 'self'; form-action 'self' *.wlp-acs.com *.monext.fr *.cic.fr *.creditmutuel.fr *.marqeta.com *.secure.lcl.fr 3ds.redsys.es connect.facebook.net www.facebook.com checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com; frame-ancestors 'none'; frame-src connect.facebook.net www.facebook.com checkoutshopper-live.adyen.com *.cdn.adyen.com *.adyen.com *.firebaseapp.com *.doubleclick.net; manifest-src 'self'; block-all-mixed-content; report-uri https://csp-report.browser-intake-datadoghq.eu/api/v2/logs?dd-api-key=pubc9d6ee3ce79da61dcd985b50012b6709&dd-evp-origin=content-security-policy&ddsource=csp-report&ddtags=env%3Aprod |
content-type: |
text/html; charset=utf-8 |
date: |
Tue, 01 Oct 2024 15:23:48 GMT |
etag: |
"1111479e26fc338443e77fec051b7e24" |
server: |
Vercel |
strict-transport-security: |
max-age=31536000; includeSubDomains; |
vary: |
RSC, Next-Router-State-Tree, Next-Router-Prefetch |
x-content-type-options: |
nosniff |
x-frame-options: |
DENY |
x-matched-path: |
/fr |
x-vercel-cache: |
HIT |
x-vercel-id: |
fra1::nvlvl-1727796228035-fa54b3ec34db |
connection: |
close |