server: |
nginx |
date: |
Tue, 01 Oct 2024 20:36:30 GMT |
content-type: |
text/html; charset=utf-8 |
transfer-encoding: |
chunked |
connection: |
close |
vary: |
Accept-Encoding |
p3p: |
CP="NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM" |
cache-control: |
no-cache |
pragma: |
no-cache |
set-cookie: |
e506315d79021b03a4be232f188fe40c=f4e645013570ee89fceaeb0b20beb0de; path=/,0d53200f7578469d12ddd129ae797c1b=en-GB; expires=Wed, 01-Oct-2025 20:36:30 GMT; Max-Age=31536000; path=/ |
x-content-type-options: |
nosniff |
access-control-allow-methods: |
GET,POST,OPTIONS,DELETE,PUT |
feature-policy: |
accelerometer 'none'; autoplay 'self'; camera 'none'; encrypted-media 'self'; fullscreen 'self'; geolocation 'none'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; payment 'self'; picture-in-picture 'self'; sync-xhr 'self'; usb 'none' |
permissions-policy: |
fullscreen=(self "https://www.youtube.com"), autoplay=(self "https://www.youtube.com") |
referrer-policy: |
strict-origin-when-cross-origin |
x-xss-protection: |
1; mode=block |
x-frame-options: |
SAMEORIGIN |
content-security-policy: |
default-src 'none'; connect-src 'self' https://kloud.sansebastianturismoa.eus https://googleads.g.doubleclick.net https://www.google.com https://*.googlesyndication.com https://matomo.adimedia.net https://*.google.es https://*.taboola.com https://play.google.com https://csp.withgoogle.com https://client.crisp.chat https://stats.g.doubleclick.net wss://client.relay.crisp.chat https://shop.sansebastianturismoa.eus/ https://api-public.addthis.com/url/serviceapi/ https://m.addthis.com/live/red_lojson/ https://maps.googleapis.com/ https://maps.googleapis.com/maps/ https://region1.analytics.google.com/g/collect https://s7.addthis.com/l10n/client.es.min.json https://s7.addthis.com/ https://stats.g.doubleclick.net/j/collect https://www.facebook.com/tr/ https://*.google-analytics.com/ wss://client.relay.crisp.chat/w/f3/ https://adservice.google.com https://www.googleadservices.com; font-src 'self' data: https://www.sansebastianturismoa.eus https://client.crisp.chat https://fonts.gstatic.com; frame-src 'self' https://app.snapsea.io https://*.doubleclick.net https://sustainabletravel.org https://w.soundcloud.com https://docs.google.com https://cse.google.com https://www.hayquever.com https://www.facebook.com/ https://player.vimeo.com/ http://ww1.sansebastiantourvirtual.com https://snapwidget.com https://sansebastiantourvirtual.com https://www.youtube.com/ https://www.google.com/ https://maps.google.com https://s7.addthis.com; img-src 'self' data: https://matomo.adimedia.net https://ad.doubleclick.net https://*.zemanta.com https://tracker.metricool.com https://*.gstatic.com https://*.google.com https://www.googleapis.com https://maps.googleapis.com http://*.sansebastianturismoa.eus https://*.sansebastianturismoa.eus https://googleads.g.doubleclick.net https://i.ytimg.com https://analytics.twitter.com https://image.crisp.chat https://maps.google.com https://maps.gstatic.com https://t.co https://www.facebook.com https://*.google-analytics.com https://www.google.com https://*.google.es https://www.googletagmanager.com https://kloud.sansebastianturismoa.eus https://www.googleadservices.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://snapsea.fra1.digitaloceanspaces.com https://matomo.adimedia.net https://*.zemanta.com https://*.taboola.com https://bucket.cdnwebcloud.com https://tracker.metricool.com https://tracker.metr https://*.google.com https://partner.googleadservices.com https://cse.google.com https://www.gstatic.com https://www.google.com https://www.sansebastianturismoa.eus https://www.googleadservices.com https://snapwidget.com https://polyfill.io https://unpkg.com https://ajax.googleapis.com/ajax/libs/ https://www.youtube.com/ https://api-public.addthis.com/url/shares.json https://cdnjs.cloudflare.com/ajax/ https://client.crisp.chat/ https://code.jquery.com/ https://connect.facebook.net/en_US/fbevents.js https://connect.facebook.net/signals/config/ https://connect.facebook.net/signals/config/ https://googleads.g.doubleclick.net/pagead/viewthroughconversion/ https://googleads.g.doubleclick.net/pagead/viewthroughconversion/ https://googleads.g.doubleclick.net/pagead/viewthroughconversion/ https://m.addthis.com/live/red_lojson/300lo.json https://maps.google.com/ https://maps.googleapis.com/ https://s7.addthis.com/js/ https://s7.addthis.com/static/ https://static.ads-twitter.com/uwt.js https://v1.addthisedge.com/live/ https://widgets.pinterest.com/v1/urls/ https://www.google-analytics.com/ https://www.googletagmanager.com/ https://z.moatads.com/ https://kloud.sansebastianturismoa.eus/; style-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://snapsea.fra1.digitaloceanspaces.com https://www.google.com https://www.gstatic.com https://www.sansebastianturismoa.eus https://unpkg.com https://client.crisp.chat/static/stylesheets/ https://fonts.googleapis.com/; media-src 'self' https://press.sansebastianturismoa.eus; frame-ancestors 'self'; |
strict-transport-security: |
max-age=31536000 |