access-control-allow-headers: |
X-Requested-With |
link: |
<https://web.static.nowtv.com/>; rel="preconnect", <https://images.metadata.sky.com/>; rel="preconnect", <https://imageservice.sky.com/>; rel="preconnect", <https://eu.api.atom.sky.com/>; rel="preconnect" <https://ottsas.sky.com/>; rel="preconnect" <https://uiapi.id.nowtv.it/>; rel="preconnect" <https://sas-apm.telem.prod.ott.sky/>; rel="preconnect" |
x-iceberg-dc: |
eu-west-1 |
content-type: |
text/html; charset=utf-8 |
access-control-allow-origin: |
* |
expires: |
Wed, 02 Oct 2024 01:06:41 GMT |
cache-control: |
max-age=0, no-cache |
pragma: |
no-cache |
date: |
Wed, 02 Oct 2024 01:06:41 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
_dyjsession=g74hkzrnwayl135l5u0gtd3gp8nuw9ef; Max-Age=-1; Domain=nowtv.it; Path=/,_dyid_server=-6052836935385441119; Domain=nowtv.it; Path=/,_dyjsession=g74hkzrnwayl135l5u0gtd3gp8nuw9ef; Max-Age=-1; Domain=nowtv.it; Path=/,_dyid_server=-6052836935385441119; Domain=nowtv.it; Path=/,in-gold-trial=true; expires=Wed, 23-Oct-2024 12:45:10 GMT; secure; HttpOnly; SameSite=Lax |
via: |
akamai |
content-security-policy: |
default-src https://*.nowtv.it; form-action https://ott-it.secure.force.com https://ott-it.my.salesforce.com https://ott-it.my.salesforce-sites.com; font-src 'self' https://static.skyassets.com https://*.nowtv.it https://web.static.nowtv.com https://cdn-eu.dynamicyield.com https://cdn.braze.eu data:; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https://*.nowtv.it https://web.static.nowtv.com https://*.klarnacdn.net https://*.klarnaservices.com https://cdn-eu.dynamicyield.com https://cdn.dynamicyield.com https://st-eu.dynamicyield.com https://*.content-square.fr https://*.contentsquare.net https://analytics.global.sky.com https://*.demdex.net https://d3c3cq33003psk.cloudfront.net https://connect.facebook.net https://static.ads-twitter.com https://analytics.twitter.com https://*.doubleclick.net https://www.googleadservices.com https://*.myvisualiq.net https://www.dwin1.com https://*.awin1.com https://*.zenaps.com https://*.salesforce.com https://*.salesforceliveagent.com https://*.force.com https://*.salesforce-sites.com https://*.sp-prod.net https://cdn.privacy-mgmt.com https://assets.adobedtm.com https://tapestry.tapad.com https://bat.bing.com https://www.googletagmanager.com https://static.hotjar.com/ https://core.spreedly.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.optimizely.com https://smetrics.nowtv.it https://s.pinimg.com https://sc-static.net https://acdn.adnxs.com https://secure.adnxs.com https://cdn.exactag.com https://static.criteo.net https://amplify.outbrain.com https://s.yimg.com https://tracking.m6r.eu https://tr.outbrain.com https://sslwidget.criteo.com https://m.exactag.com https://analytics.tiktok.com https://the.sciencebehindecommerce.com https://a.twiago.com https://e.clarity.ms https://*.contentsquare.net https://jssdkcdns.mparticle.com https://www.paypal.com https://c.amazon-adsystem.com; connect-src 'self' https://*.ottcds.com https://*.nowtv.it https://*.sky.com https://*.klarnaevt.com https://*.klarnauserservices.com https://*.demdex.net https://graph.facebook.com https://*.contentsquare.net https://*.force.com https://*.salesforce.com https://*.salesforce-sites.com https://*.sp-prod.net https://sourcepoint.mgr.consensu.org https://web.static.nowtv.com https://cdn.privacy-mgmt.com https://dcd12547fac74c3cb90d3307a66b8089.apm.eu-west-1.aws.cloud.es.io https://sas-apm.telem.prod.ott.sky https://in.hotjar.com/ https://bat.bing.com https://www.facebook.com https://ct.pinterest.com https://tr.snapchat.com https://s.yimg.com https://analytics.tiktok.com https://the.sciencebehindecommerce.com https://direct.dy-api.eu https://direct-collect.dy-api.eu https://adm.dynamicyield.eu https://px-eu.dynamicyield.com https://cdn-eu.dynamicyield.com https://cdn.dynamicyield.com https://async-px-eu.dynamicyield.com https://rcom-eu.dynamicyield.com https://st-eu.dynamicyield.com https://*.contentsquare.net https://checkoutshopper-live.adyen.com https://*.mparticle.com https://www.paypal.com https://sdk.fra-01.braze.eu https://www.google.com https://*.g.doubleclick.net https://aax-eu.amazon-adsystem.com https://ara.paa-reporting-advertising.amazon https://logx.optimizely.com; img-src 'self' data: https://*.nowtv.com https://*.nowtv.it https://web.static.nowtv.com https://t.co https://www.facebook.com https://*.contentsquare.net https://*.awin1.com https://*.zenaps.com https://*.salesforce-sites.com https://cm.everesttech.net https://*.demdex.net https://aa.agkn.com https://pm.w55c.net https://cm.everesttech.net https://*.adnxs.com https://*.doubleclick.net https://rtd.tubemogul.com https://analytics.twitter.com https://p.rfihub.com https://a.collective-media.net https://pixel.quantserve.com https://*.bing.com https://pixel.advertising.com https://image5.pubmatic.com https://a.tribalfusion.com https://cms.analytics.yahoo.com https://odr.mookie1.com https://dmp.v.fwmrm.net https://sync-tm.everesttech.net https://spl.zeotap.com https://*.myvisualiq.net https://tapestry.tapad.com https://www.googletagmanager.com https://www.google.com https://www.google.co.uk https://www.google-analytics.com https://sp.analytics.yahoo.com https://ads-engagement.presage.io https://a.twiago.com https://ct.pinterest.com https://www3.smartadserver.com https://tr.outbrain.com https://www.pinterest.com https://www.pinterest.com https://e.clarity.ms https://cdn.dynamicyield.com https://imageservice.sky.com https://uk.imageservice.sky.com https://*.contentsquare.net https://*.imageservice.sky.com https://*.force.com https://checkoutshopper-live.adyen.com https://www.paypalobjects.com https://cdn.braze.eu https://match.adsrvr.org https://cookiesync.mparticle.com https://ups.analytics.yahoo.com https://cookiesync.eu1.mparticle.com; style-src 'self' 'unsafe-inline' https://*.nowtv.it https://web.static.nowtv.com https://*.force.com https://*.my.salesforce.com https://*.salesforce-sites.com https://cdn-eu.dynamicyield.com https://cdn.dynamicyield.com; media-src 'self' data: blob: https://*.nowtv.it https://web.static.nowtv.com; frame-src https://core.spreedly.com https://ottsas.sky.com https://sas.nowtv.it https://ad3.adfarm1.adition.com https://vars.hotjar.com https://*.sp-prod.net https://cdn.privacy-mgmt.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://*.klarna.com https://*.klarnacdn.net https://tr.snapchat.com https://*.creativecdn.com https://*.awin1.com https://*.zenaps.com https://www.pinterest.com https://gum.criteo.com https://creativecdn.com https://www.pinterest.co.uk https://bskyb.demdex.net https://cmp.nowtv.it https://*.fls.doubleclick.net https://checkoutshopper-live.adyen.com https://ott-it.my.salesforce.com https://ott-it.my.salesforce-sites.com https://ott-it.secure.force.com https://*.contentsquare.net https://www.paypal.com https://www.youtube.com https://aax-eu.amazon-adsystem.com https://td.doubleclick.net https://www.mainadv.com https://hal9000.redintelligence.net https://ad.ad-srv.net https://*.cdn.optimizely.com; worker-src blob:; upgrade-insecure-requests; |
strict-transport-security: |
max-age=15768000 ; includeSubDomains |
x-xss-protection: |
1; mode=block |
x-content-type-options: |
nosniff |
x-frame-options: |
sameorigin |