date: |
Wed, 02 Oct 2024 13:43:43 GMT |
content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
vary: |
Accept-Encoding |
content-security-policy-report-only: |
font-src *.gstatic.com 'self' data: *.doubleclick.net *.facebook.com maxcdn.bootstrapcdn.com https://*.tidiochat.com https://www.gstatic.com https://fonts.gstatic.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.facebook.com https://plumrocket.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src bid.g.doubleclick.net www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ www.googletagmanager.com https://www.google.com *.doubleclick.net *.facebook.com *.youtube-nocookie.com https://*.hulla-cdn.com live.hullabalook.com https://*.pinterest.com https://online-mi.flexiti.fi https://plumrocket.com https://*.online-metrix.net https://imgs.signifyd.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com *.ftcdn.net *.behance.net t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com validator.swagger.io 'self' data: *.google.com *.google.bg *.facebook.com *.facebook.net *.doubleclick.net *.googletagmanager.com *.gstatic.com ebizmarts-website.s3.amazonaws.com downloads.mailchimp.com gallery.mailchimp.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.googleapis.com *.s3.amazonaws.com cdnjs.cloudflare.com unpkg.com https://*.google.ca https://onlineapi-mi.flexiti.fi https://imgs.signifyd.com https://*.online-metrix.net data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ https://www.google.com *.google.bg *.googletagmanager.com *.facebook.com *.facebook.net *.doubleclick.net *.google-analytics.com *.gstatic.com chimpstatic.com downloads.mailchimp.com *.list-manage.com https://polyfill-fastly.io https://browser.sentry-cdn.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ maps.googleapis.com https://*.hotjar.com https://*.omappapi.com https://*.privacy-center.org *.googleapis.com https://*.hulla-cdn.com https://*.hullabalook.com https://*.tidio.co https://*.tidiochat.com https://*.clarity.ms https://*.pinterest.com https://*.klaviyo.com https://*.pinimg.com https://hosted.paysafe.com https://www.gstatic.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.googleapis.com *.doubleclick.net *.facebook.com *.gstatic.com *.googletagmanager.com downloads.mailchimp.com https://static.klaviyo.com maxcdn.bootstrapcdn.com https://*.hullabalook.com https://*.omappapi.com https://*.klaviyo.com cdnjs.cloudflare.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src https://*.tidiochat.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.google-analytics.com *.facebook.com *.facebook.net *.google.com https://*.ingest.sentry.io https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ vimeo.com maps.googleapis.com https://*.privacy-center.org wss://*.hotjar.com/ https://*.hotjar.com https://*.hotjar.io https://*.omappapi.com wss://*.tidio.co/ https://*.tidio.co https://*.hulla-cdn.com https://*.hullabalook.com https://*.pinterest.com/ https://*.googlesyndication.com https://*.g.doubleclick.net/ https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src https://*.privacy-center.org https://*.hullabalook.com https://*.hulla-cdn.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; |
content-security-policy: |
upgrade-insecure-requests;, default-src 'self'; object-src 'self'; media-src 'self' data: blob: widget-v4.tidiochat.com; style-src 'unsafe-inline' *; img-src * data: blob: *.vimeocdn.com; font-src * data: blob: widget-v4.tidiochat.com; connect-src * data: wss://*.zopim.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.moatads.com wurfl.io *.booxi.com booxi.com *.online.flexiti.fi online.flexiti.fi *.onlineapi.flexiti.fi onlineapi.flexiti.fi *.codylindley.com http://codylindley.com *.gridserver.com gridserver.com *.cdnjs.cloudflare.com cdnjs.cloudflare.com *.a.omappapi.com a.omappapi.com *.paysafe.com *.hotjar.com *.justuno.com *.jst.ai *.srv.stackadapt.com *.heyday.ai *.octapi.net *.recettes.net tagmanager.google.com captcha.gecirtnotification.com api.comprigo.com static.zdassets.com gateway.zscaler.net *.dcbap.com *.mydomastudio.com assets.shoptagr.com *.paypal.com *.signifyd.com *.addthis.com *.akamaihd.net *.addthisedge.com gateway.zscloud.net *.itineraire.info www.google.com www.google-analytics.com *.googleadservices.com *.googlesyndication.com www.googletagmanager.com www.gstatic.com googleads.g.doubleclick.net www.facebook.com connect.facebook.net t.trackedlink.net secure.adnxs.com tags.tiqcdn.com https://*.zopim.com wss://*.zopim.com https://*.zopim.io chimpstatic.com ib.adnxs.com cdn.districtm.ca pixel.adacado.com assets.pinterest.com *.googleapis.com *.instagram.com *.bing.com *.pinimg.com online-training.flexiti.fi *.hullabalook.com https://*.hullabalook.com webchat.heyday.ai wurfl.io *.vimeo.com vimeo.com *.vimeocdn.com sdk.privacy-center.org live.hullabalook.com code.tidio.co widget-v4.tidiochat.com https://*.klaviyo.com; frame-src 'self' gsa://onpageload h.online-metrix.net *.flexiti.fi online-training.flexiti.fi *.online-training.flexiti.fi https://player.vimeo.com wurfl.io *.booxi.com booxi.com *.online.flexiti.fi online.flexiti.fi *.onlineapi.flexiti.fi onlineapi.flexiti.fi *.codylindley.com codylindley.com *.gridserver.com gridserver.com *.cdnjs.cloudflare.com cdnjs.cloudflare.com *.a.omappapi.com a.omappapi.com *.paysafe.com *.hotjar.com *.justuno.com *.jst.ai *.srv.stackadapt.com *.heyday.ai *.facebook.net *.google.com *.signifyd.com *.mydomastudio.com www.facebook.com store.plumrocket.com mozbar.moz.com *.cloudfront.net *.paypal.com *.addthis.com *.addthisedge.com cdncache-a.akamaihd.net www.polyvore.com acdn.adnxs.com client.comprigo.com *.amazonaws.com tpc.googlesyndication.com www.ciuvo.com *.kamaihd.net *.soundcloud.com tags.tiqcdn.com www.googletagmanager.com www.youtube.com s7.addthis.com https://*.zopim.com wss://*.zopim.com https://*.zopim.io bid.g.doubleclick.net *.fls.doubleclick.net assets.pinterest.com *.googleapis.com *.instagram.com *.hullabalook.com https://*.hullabalook.com *.hulla-cdn.com player.vimeo.com sdk.privacy-center.org live.hullabalook.com |
x-content-type-options: |
nosniff |
x-xss-protection: |
1; mode=block |
x-frame-options: |
SAMEORIGIN |
x-magento-cache-debug: |
HIT |
grace: |
none |
pragma: |
no-cache |
expires: |
-1 |
cache-control: |
no-store, no-cache, must-revalidate, max-age=0 |
cf-cache-status: |
DYNAMIC |
report-to: |
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=AxxLvPclk79Vcro%2F%2FTJS8oPUrBdSe04Wkc0A1vy8knuUvC7Z%2BWLs%2Bf7x8YDoykz%2Fw9Fgw8SIcey5kazH9jX85x%2FHgp18f62VFnWzmo9xt%2BibXIp21OKvjsweYN8%3D"}],"group":"cf-nel","max_age":604800} |
nel: |
{"success_fraction":0,"report_to":"cf-nel","max_age":604800} |
server: |
cloudflare |
cf-ray: |
8cc51f803e829ffb-AMS |