connection: |
close |
content-length: |
258265 |
cache-control: |
max-age=86400, public |
content-language: |
nl-nl |
content-security-policy: |
default-src 'unsafe-inline' 'unsafe-eval' 'self' *.sessioncam.com *.cloudfront.net *.segmentapis.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.googleapis.com *.sessioncam.com *.cloudfront.net *.googletagmanager.com *.google-analytics.com *.analytics.google.com *.google.com *.google.co.uk *.newrelic.com *.betrad.com bam.nr-data.net static.addtoany.com https://cdnjs.cloudflare.com brand-ecommerce-assets.fusepump.com *.youtube.com s.ytimg.com *.evidon.com code.jquery.com *.serving-sys.com 7225833.collect.igodigital.com connect.facebook.net https://cdn.hypemarks.com http://cdn.hypemarks.com https://www.gstatic.com *.krxd.net cdn.adimo.co *.bazaarvoice.com mpsnare.iesnare.com www.googleadservices.com static.hotjar.com bat.bing.com s.yimg.com sp.analytics.yahoo.com script.hotjar.com *.nestle.co.uk optimize.google.com https://www.googleoptimize.com *.adimo.co *.adimouat.co *.amazonaws.com *.doubleclick.net *.usabilla.com *.gbqofs.io *.gbqofs.com https://tintup.com https://www.tintup.com *.evidon.com https://l.evidon.com *.cookielaw.org *.cookiepro.com www.google-analytics.com https://www.googletagmanager.com *.cdn.cookielaw.org *.cookie-cdn.cookiepro.com *.onetrust.com https://cdn.cookielaw.org/ *.cloudfront.net *.usabilla.com *.googleapis.com *.tintup.com *.cloudfront.net *.usabilla.com *.googleapis.com *.segment.com; object-src 'none'; style-src *.bazaarvoice.com *.adimo.co 'self' 'unsafe-inline' fonts.googleapis.com fonts.gstatic.com *.cloudflare.com brand-ecommerce-assets.fusepump.com *.youtube.com cloud.typography.com *.google.com use.fontawesome.com *.nestle.co.uk optimize.google.com *.adimo.co *.adimouat.co *.amazonaws.com *.doubleclick.net *.evidon.com https://l.evidon.com *.cookielaw.org *.cookiepro.com www.google-analytics.com https://www.googletagmanager.com *.cdn.cookielaw.org *.cookie-cdn.cookiepro.com *.onetrust.com https://cdn.cookielaw.org *.cloudfront.net *.cloudfront.net *.usabilla.com *.googleapis.com; img-src 'self' data: *.googleapis.com *.gstatic.com *.cloudflare.com *.sessioncam.com *.cloudfront.net *.google-analytics.com *.analytics.google.com https://stats.g.doubleclick.net www.google.com www.google.co.uk *.doubleclick.net *.betrad.com *.amazonaws.com px.pump.to brand-ecommerce-assets.fusepump.com *.evidon.com https://nova.collect.igodigital.com https://www.facebook.com *.krxd.net *.nestlebeverages.acsitefactory.com *.starbucksathome.com *.adimo.co advantage.iriworldwide.com *.iriworldwide.com *.bazaarvoice.com display.ugc.bazaarvoice.com display.ugc.bazaarvoice.com bat.bing.com www.google.co.in google-analytics.com optimize.google.com *.pantheonsite.io *.adimo.co *.adimouat.co *.amazonaws.com *.doubleclick.net w.usabilla.com *.evidon.com https://l.evidon.com *.cookielaw.org *.cookiepro.com www.google-analytics.com https://www.googletagmanager.com *.cdn.cookielaw.org *.cookie-cdn.cookiepro.com *.onetrust.com https://cdn.cookielaw.org *.googlesyndication.com *.cloudfront.net *.usabilla.com *.googleapis.com *.cloudfront.net *.usabilla.com *.googleapis.com; media-src 'self'; frame-src 'self' static.addtoany.com *.youtube.com *.youtu.be youtu.be info.evidon.com https://2275258.fls.doubleclick.net http://2275258.fls.doubleclick.net http://www.youtube-nocookie.com https://www.youtube-nocookie.com https://cdn.hypemarks.com http://cdn.hypemarks.com https://brand-ecommerce-assets.fusepump.com https://www.google.com/ *.krxd.net l3.evidon.com *.adimo.co stg.api.bazaarvoice.com display.ugc.bazaarvoice.com https://forms.na2.netsuite.com *.hotjar.com bid.g.doubleclick.net acct123488.extforms.netsuite.com servedby.flashtalking.com optimize.google.com www.tintup.com *.adimo.co *.adimouat.co *.amazonaws.com *.doubleclick.net www.facebook.com *.cloudfront.net *.usabilla.com *.googleapis.com; frame-ancestors 'self'; child-src 'self' static.addtoany.com *.youtube.com *.youtu.be youtu.be info.evidon.com https://2275258.fls.doubleclick.net http://2275258.fls.doubleclick.net http://www.youtube-nocookie.com https://www.youtube-nocookie.com https://cdn.hypemarks.com http://cdn.hypemarks.com https://forms.na2.netsuite.com blob:; font-src 'self' data: fonts.gstatic.com fonts.googleapis.com https://cdnjs.cloudflare.com use.fontawesome.com d6tizftlrpuof.cloudfront.net www.starbucksathome.com *.cloudfront.net *.usabilla.com *.googleapis.com; connect-src 'self' brand-ecommerce-api.fusepump.com *.sessioncam.com *.cloudfront.net *.google-analytics.com *.analytics.google.com collect.analyze.ly secure-ds.serving-sys.com stats.g.doubleclick.net productlocator.iriworldwide.com stg.api.bazaarvoice.com api.bazaarvoice.com vc.hotjar.io in.hotjar.com bam.nr-data.net *.adimo.co *.adimouat.co *.amazonaws.com *.doubleclick.net optoutapi.evidon.com w.usabilla.com api.usabilla.com googleads.g.doubleclick.net www.google.com *.gbqofs.io *.gbqofs.com *.evidon.com https://l.evidon.com *.cookielaw.org *.cookiepro.com www.google-analytics.com https://www.googletagmanager.com *.cdn.cookielaw.org *.cookie-cdn.cookiepro.com *.onetrust.com https://cdn.cookielaw.org/ *.cloudfront.net *.usabilla.com *.googleapis.com *.tintup.com *.cloudfront.net *.usabilla.com *.googleapis.com *.segment.com *.segmentapis.com |
content-type: |
text/html; charset=UTF-8 |
etag: |
W/"1727803271" |
expires: |
Sun, 19 Nov 1978 05:00:00 GMT |
last-modified: |
Tue, 01 Oct 2024 17:21:11 GMT |
server: |
nginx |
strict-transport-security: |
max-age=300 |
x-content-type-options: |
nosniff |
x-frame-options: |
SAMEORIGIN |
x-generator: |
Drupal 10 (https://www.drupal.org) |
x-pantheon-styx-hostname: |
styx-fe3fe4-d-84bb9ddc74-2wp6z |
x-styx-req-id: |
8de008c9-8019-11ef-bb4b-ba8ef63ba14d |
x-xss-protection: |
1; mode=block |
age: |
19793 |
accept-ranges: |
bytes |
via: |
1.1 varnish, 1.1 varnish, 1.1 varnish |
date: |
Tue, 01 Oct 2024 22:51:05 GMT |
x-served-by: |
cache-ams2100089-AMS, cache-ams2100089-AMS, cache-ams21068-AMS |
x-cache: |
HIT, MISS, MISS |
x-cache-hits: |
5, 0, 0 |
x-timer: |
S1727823065.428646,VS0,VE4 |
vary: |
Accept-Encoding, adv-cdn-origin, X-Geo-Country-Code, Cookie, orig-host |