content-type: |
text/html; charset=utf-8 |
request-context: |
appId=cid-v1:dfe708dc-ccbe-4e39-8292-60a7bce70527 |
x-xss-protection: |
1; mode=block |
x-frame-options: |
DENY |
x-content-type-options: |
nosniff |
referrer-policy: |
unsafe-url |
permissions-policy: |
accelerometer=(), camera=(), geolocation=*, gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=() |
x-azure-ref: |
20240930T233143Z-r1944857c99vhj7ta9xebcpxcn0000000xq000000000hmmq |
x-akamai-transformed: |
9 - 0 pmb=mRUM,2 |
expires: |
Mon, 30 Sep 2024 23:31:43 GMT |
cache-control: |
max-age=0, no-cache, no-store |
pragma: |
no-cache |
date: |
Mon, 30 Sep 2024 23:31:43 GMT |
transfer-encoding: |
chunked |
connection: |
close, Transfer-Encoding |
set-cookie: |
site_lang=en; path=/,site_name=Corporate; path=/,corporate#lang=en; path=/; secure; SameSite=None,.MOHG.Corporate.Session=CfDJ8Frt6fyx1FxJrZbFszsp89l0Wq1TVhXlPTzMRwKDRjtGqkpCKFUv%2FPCZniSeRwghY6166VwTNJitkGTEdpwTMMyIoTfKR9B4rT5ogjZdHzSsiKwVJCMsuNIPhdpGIuhRZAGTTbu1Qx7zEjqaoy4g59bpafTspJvCHLhgJNrHcQ9M; path=/; secure; samesite=lax; httponly,AKA_A2=A; expires=Tue, 01-Oct-2024 00:31:43 GMT; path=/; domain=mandarinoriental.com; secure; HttpOnly |
server-timing: |
cdn-cache; desc=MISS, edge; dur=9, origin; dur=213, ak_p; desc="1727739103349_1551583113_726239340_22205_4667_9_5_-";dur=1 |
link: |
<https://www.mandarinoriental.com/fonts/akkuratllwebpan-bold.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://www.mandarinoriental.com/fonts/akkuratllwebpan-regular.woff2>;rel="preload";as="font";type="font/woff2";crossorigin,<https://www.mandarinoriental.com/fonts/4e43f64c-cddd-4d0b-a7cb-476fb498dcf4.woff2>;rel="preload";as="font";type="font/woff2";crossorigin, <https://assets.adobedtm.com>;rel="preconnect",<https://cdn.cookielaw.org>;rel="preconnect",<https://connect.facebook.net>;rel="preconnect",<https://s.yimg.jp>;rel="preconnect",<https://b99.yahoo.co.jp>;rel="preconnect",<https://www.dwin1.com>;rel="preconnect",<https://sc-static.net>;rel="preconnect",<https://lantern.roeyecdn.com>;rel="preconnect",<https://static.tacdn.com>;rel="preconnect" |
strict-transport-security: |
max-age=86400 ; includeSubDomains |
content-security-policy: |
default-src https: 'self'; script-src 'self' 'report-sample' 'unsafe-inline' 'unsafe-eval' https://cloud.e.mandarinoriental.com https://siteintercept.qualtrics.com https://cdnjs.cloudflare.com https://cloud.official.mandarinoriental.com https://zn1z6joka9pfuojsc-mohgcx.siteintercept.qualtrics.com https://maps.googleapis.com https://www.wepowerconnections.com https://lantern.roeyecdn.com https://tags.creativecdn.com https://*.demdex.net https://*.doubleclick.net https://*.everesttech.net https://*.go-mpulse.net https://*.google.com https://*.googleadservices.com https://*.googlesyndication.com https://*.googletagservices.com https://assets.adobedtm.com https://b99.yahoo.co.jp https://commerce.adobedtm.com https://cdn.cookielaw.org https://connect.facebook.net https://content.linkedin.com https://graph.facebook.com https://googletagmanager.com https://js.facebook.com https://platform.linkedin.com https://p.teads.tv https://recaptcha.net https://snap.licdn.com https://static-exp1.licdn.com https://sc-static.net https://static.tacdn.com https://s.yimg.jp https://tagmanager.google.com https://tr.snapchat.com https://www.clarity.ms https://www.awin1.com https://www.dwin1.com https://www.google.com/recaptcha/ https://www.googletagmanager.com https://www.gstatic.cn/recaptcha/ https://www.gstatic.com https://www.gstatic.com/recaptcha/ https://www.recaptcha.net https://linkcenterus.derbysoftsec.com/ https://px.ads.linkedin.com/ https://analytics.tiktok.com https://secde.trivago.com https://js.verygoodvault.com; style-src 'self' 'report-sample' 'unsafe-inline' https://cloud.e.mandarinoriental.com https://cloud.official.mandarinoriental.com *.licdn.com *.google.com www.googletagmanager.com; img-src 'self' data: https://*; |
access-control-allow-headers: |
content-type,vgs-client |
access-control-allow-credentials: |
true |
access-control-allow-methods: |
GET,PUT,POST,DELETE,OPTIONS |
access-control-allow-origin: |
*.mandarinoriental.com;*.moweb-acc.com;*.sitecore.moweb-acc.com;*.managedcloud.sitecore.com;*.verygoodvault.com;*.verygoodproxy.com; |