connection: |
close |
content-length: |
695808 |
content-security-policy: |
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com maxcdn.bootstrapcdn.com data: *.bootstrapcdn.com *.zopim.com applepay.cdn-apple.com *.flixcar.com media.flixfacts.com media.flixfacts.co.uk *.evergage.com cdn.evgnet.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.paypal.com *.doubleclick.net *.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.my.salesforce-scrt.com *.my.site.com *.vf.force.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com player.vimeo.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com www.googletagmanager.com *.googletagmanager.com esqa.moneris.com www3.moneris.com pay.google.com *.online-metrix.net *.signifyd.com *.facebook.com *.moneris.com *.circularhub.com *.flyertown.ca ct.pinterest.com *.google.ca *.doubleclick.net salsify-ecdn.com *.flixcar.com *.evergage.com cdn.evgnet.com *.my.salesforce-scrt.com *.my.site.com *.vf.force.com form.typeform.com https://*.online-metrix.net https://imgs.signifyd.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com *.googleapis.com *.google.com *.googleusercontent.com imgs.signifyd.com maps.googleapis.com sdk.privacy-center.org blob: *.facebook.com *.meublesrd.com *.clarity.ms *.bing.com *.zopim.com *.zopim.io *.zdassets.com *.zendesk.com *.amazonaws.com *.flippenterprise.net *.wishabi.com *.wishabi.net *.placeholder.com px.ads.linkedin.com ct.pinterest.com googletagmanager.com *.googletagmanager.com *.google-analytics.com *.google.ca *.doubleclick.net event.syndigo.cloud content.syndigo.com *.flixcar.com *.flix360.com *.flixfacts.com *.flixfacts.co.uk *.flixsyndication.net *.flix360.io *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com cdn.jwplayer.com img.youtube.com vumbnail.com ts.vimeo.com.s3.amazonaws.com *.evergage.com cdn.evgnet.com https://imgs.signifyd.com https://*.online-metrix.net data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net *.commerce-payment-services.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com *.googleapis.com *.gstatic.com *.ggpht.com *.googleusercontent.com *.googletagmanager.com esqa.moneris.com www3.moneris.com applepay.cdn-apple.com pay.google.com cdn-scripts.signifyd.com imgs.signifyd.com maps.googleapis.com developers.google.com sdk.privacy-center.org *.trackedweb.net *.facebook.net secure.adnxs.com *.cobrowse.io *.zdassets.com *.zopim.com *.clarity.ms bam-cell.nr-data.net bam.nr-data.net *.bing.com *.smooch.io *.circularhub.com *.flippenterprise.net blob: snap.licdn.com *.adobedtm.com *.authorize.net *.jsdelivr.net h64.online-metrix.net ct.pinterest.com *.pinimg.com *.google.ca *.doubleclick.net *.googlesyndication.com *.hotjar.com *.acuityplatform.com *.tiktok.com salsify-ecdn.com content.syndigo.com *.flixfacts.com *.flixcar.com *.flixfacts.co.uk *.flixsyndication.net *.flix360.com *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.flix360.io *.pointandplace.com *.vimeo.com *.evergage.com cdn.evgnet.com cloud.mkt.meublesrd.com *.my.salesforce-scrt.com *.my.site.com unpkg.com embed.typeform.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://h64.online-metrix.net 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com maxcdn.bootstrapcdn.com *.bootstrapcdn.com *.meublesrd.com www.meublesrd.com *.flippenterprise.net *.googleapis.com tagmanager.google.com *.flixcar.com *.evergage.com cdn.evgnet.com *.my.salesforce-scrt.com *.my.site.com embed.typeform.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.zdassets.com *.doubleclick.net *.google.com *.google.ca blob: *.flixcar.com *.flix360.com *.flixfacts.com *.flixfacts.co.uk *.flixsyndication.net *.flix360.io *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com *.evergage.com cdn.evgnet.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net vimeo.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.googleapis.com *.gstatic.com *.algolia.net *.algolia.com *.algolianet.com *.insights.algolia.io insights.algolia.io api.privacy-center.org *.signifyd.com *.signifyd.com:11103 *.zopim.com *.zdassets.com *.zendesk.com *.facebook.net *.facebook.com *.clarity.ms *.trackedweb.net *.cobrowse.io *.bing.com *.smooch.io wss://widget-mediator.zopim.com *.chatid.com wss://api.cobrowse.io wss://api.smooch.io bam-cell.nr-data.net bam.nr-data.net sentry.io *.flippenterprise.net *.flippback.com *.flipp.com *.algolia.io cdn.linkedin.oribi.io *.ads.linkedin.com www.pinterest.com ct.pinterest.com *.doubleclick.net *.google.ca *.google-analytics.com *.analytics.google.com *.googletagmanager.com *.g.doubleclick.net google.com/pay gtm-serverside-tagging-387114.nn.r.appspot.com *.googlesyndication.com vc.hotjar.io *.acuityplatform.com *.tiktok.com analytics.pangle-ads.com salsify-ecdn.com *.internal.salsify.com content.syndigo.com *.flixfacts.com *.flixcar.com *.flixfacts.co.uk *.flixsyndication.net *.flix360.com *.flix360.io *.jwplatform.com *.jwpsrv.com *.jwpcdn.com *.cloudfront.net *.pointandplace.com *.vimeocdn.com *.evergage.com cdn.evgnet.com cloud.mkt.meublesrd.com *.my.salesforce-scrt.com *.my.site.com api.typeform.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; |
content-type: |
text/html; charset=UTF-8 |
expires: |
Sat, 05 Oct 2024 00:07:25 GMT |
pragma: |
cache |
traceresponse: |
00-17fb173ffae18ecda89bd20600520122-61372a3cb656bd29-01 |
x-content-type-options: |
nosniff |
x-debug-info: |
eyJyZXRyaWVzIjowfQ== |
x-frame-options: |
SAMEORIGIN |
x-platform-server: |
i-04da4eec9c7b5bd54, i-04da4eec9c7b5bd54 |
x-xss-protection: |
1; mode=block |
accept-ranges: |
bytes |
date: |
Fri, 04 Oct 2024 00:13:12 GMT |
age: |
347 |
x-served-by: |
cache-iad-kiad7000175-IAD, cache-ams21077-AMS |
x-cache: |
HIT, HIT |
x-cache-hits: |
4, 1 |
cache-control: |
no-store, no-cache, must-revalidate, max-age=0 |
vary: |
Accept-Encoding,Cookie |
strict-transport-security: |
max-age=900 |
|