content-length: |
124929 |
connection: |
close |
content-type: |
text/html; charset=utf-8 |
date: |
Tue, 01 Oct 2024 18:40:59 GMT |
access-control-expose-headers: |
Request-Context |
cache-control: |
no-cache, no-store |
expires: |
-1 |
pragma: |
no-cache |
set-cookie: |
shell#lang=en; path=/; secure; SameSite=None,ASP.NET_SessionId=cwq3i0tw1raqh5ufee2s3g03; path=/; secure; HttpOnly; SameSite=None,SC_ANALYTICS_GLOBAL_COOKIE=35db3242fdd9415496567d88584cad3a|False; expires=Thu, 01-Oct-2026 18:40:58 GMT; path=/; secure; HttpOnly; SameSite=None,TS01984cb6=015a2680923eb722abdbbd3a504addb619d95e8517ef511441557b68e11e5ca3c54974b6877d724af87f9ef39a9c946ddeb25165b0; Path=/; Secure; HTTPOnly,TSeb6439c0027=08caa50cc8ab20006eca419d00fce8c84d160ad923c1447c2f1cfb4e9c1f7a2395ffe6f5d1d0acea08205bfc481130009ce3645e0ad2bcaa6f90ca15eedb3d67e676f2550b2ae718c96d6b9dad02a7b9f406162a2cab84d861ec9e70dcde2445; Path=/ |
content-security-policy: |
default-src 'self' blob:;script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: data: https://d35vb5cccm4xzp.cloudfront.net/web-flow-libs/d6825fa30c83898df7774658d746d10c/web-version.min.js https://api-engage-eu.sitecorecloud.io/v1.2/browser/create.json* d35vb5cccm4xzp.cloudfront.net https://d1mj578wat5n4o.cloudfront.net/sitecore-engage-v.1.4.2.min.js https://google.nl/pagead/1p-conversion/accountID/* https://admin.relay42.com *.r42tag.com *.visualwebsiteoptimizer.com app.vwo.com *.pingvp.com analytics.interpolis.nl *.mopinion.com *.interpolis.nl az416426.vo.msecnd.net analytics.twitter.com www.google-analytics.com static.ads-twitter.com www.googleoptimize.com www.googletagmanager.com *.doubleclick.net *.googleadservices.com opzeggen.nl www.opzeggen.nl cdn.harvest.graindata.com widget.greenonline.nl https://static.hotjar.com https://script.hotjar.com https://js.arcgis.com *.googleanalytics.com https://optimize.google.com https://*.hotjar.io:* googleads.g.doubleclick.net tpc.googlesyndication.com *.youtube.com;style-src 'self' 'unsafe-inline' *.pingvp.com fonts.googleapis.com fast.fonts.net js.arcgis.com widget.greenonline.nl optimize.google.com *.visualwebsiteoptimizer.com app.vwo.com s3.amazonaws.com;img-src 'self' data: *.openstreetmap.org/ *.pingvp.com *.google-analytics.com www.google.com https://t.co/i/adsct www.googletagmanager.com https://i.ytimg.com/ img.youtube.com services.arcgisonline.com server.arcgisonline.com www.google.nl interpolis.imgix.com js.arcgis.com fls.doubleclick.net interpolis.imgix.net https://script.hotjar.com optimize.google.com www.gstatic.com https://analytics.twitter.com https://ad.doubleclick.net https://googleads.g.doubleclick.net *.visualwebsiteoptimizer.com chart.googleapis.com wingify-assets.s3.amazonaws.com app.vwo.com;font-src 'self' data: *.pingvp.com fonts.gstatic.com js.arcgis.com widget.greenonline.nl https://script.hotjar.com;connect-src 'self' *.openstreetmap.org/ https://api-engage-eu.sitecorecloud.io/v1.2/events api-engage-eu.sitecorecloud.io https://google.com/ccm/ https://google.com/pagead/ https://api-engage-eu.sitecorecloud.io/v1.2/browser/create.json.* https://pagead2.googlesyndication.com/pagead/landing https://google.nl/pagead/1p-conversion/accountID/* *.pingvp.com *.mopinion.com *.interpolis.nl dc.services.visualstudio.com *.google-analytics.com https://www.opzeggen.nl interpolis.imgix.net controle.achmea.consentmonitor.nl https://*.hotjar.com:* https://*.hotjar.io:* https://surveystats.hotjar.io wss://*.hotjar.com services.arcgisonline.com adservice.google.com geocode.arcgis.com https://ad.doubleclick.net *.visualwebsiteoptimizer.com app.vwo.com https://www.google.com/pagead/landing https://googleads.g.doubleclick.net/pagead/landing *.coveo.com;media-src 'self' *.pingvp.com *.interpolis.nl *.openstreetmap.org/;object-src 'self' *.pingvp.com;child-src 'self' blob: t.svtrd.com youtube-nocookie.com www.youtube-nocookie.com *.doubleclick.net *.hotjar.com *.hotjar.io e.interpolis.nl widgets.bnr.nl www.youtube.com art19.com optimize.google.com *.pingvp.com tpc.googlesyndication.com app.vwo.com formulier.interpolis.nl www.google-analytics.com;frame-ancestors 'self' www.youtube-nocookie.com youtube-nocookie.com *.doubleclick.net e.interpolis.nl https://vars.hotjar.com optimize.google.com tpc.googlesyndication.com app.vwo.com *.visualwebsiteoptimizer.com;form-action 'self' t.svtrd.com https://transaction.acceptemail.com;manifest-src 'self' data: t.svtrd.com *.interpolis.nl broker.nxtid.nl;upgrade-insecure-requests;report-uri https://interpolis.ams.report-uri.com/r/t/csp/enforce;report-to endpoint-csp-violation; |
content-security-policy-report-only: |
default-src 'self' blob:;script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: data: https://d35vb5cccm4xzp.cloudfront.net/web-flow-libs/d6825fa30c83898df7774658d746d10c/web-version.min.js d35vb5cccm4xzp.cloudfront.net https://d1mj578wat5n4o.cloudfront.net/sitecore-engage-v.1.4.2.min.js https://api-engage-eu.sitecorecloud.io/v1.2/browser/create.json* https://d1mj578wat5n4o.cloudfront.net/sitecore-engage-v.1.4.2.min.js https://google.nl/pagead/1p-conversion/accountID/* *.r42tag.com https://admin.relay42.com analytics.interpolis.nl *.mopinion.com *.interpolis.nl az416426.vo.msecnd.net analytics.twitter.com www.google-analytics.com static.ads-twitter.com www.googleoptimize.com www.googletagmanager.com *.doubleclick.net *.googleadservices.com https://googleads.g.doubleclick.net opzeggen.nl www.opzeggen.nl cdn.harvest.graindata.com widget.greenonline.nl http://*.hotjar.com https://*.hotjar.com https://js.arcgis.com https://*.hotjar.io http://*.hotjar.io *.pingvp.com tpc.googlesyndication.com *.visualwebsiteoptimizer.com app.vwo.com *.youtube.com;style-src 'self' 'unsafe-inline' fonts.googleapis.com fast.fonts.net js.arcgis.com widget.greenonline.nl *.pingvp.com *.visualwebsiteoptimizer.com app.vwo.com s3.amazonaws.com;img-src 'self' data: *.openstreetmap.org/ *.pingvp.com *.google-analytics.com www.google.com https://t.co/i/adsct www.googletagmanager.com https://i.ytimg.com/ img.youtube.com services.arcgisonline.com server.arcgisonline.com www.google.nl interpolis.imgix.com js.arcgis.com fls.doubleclick.net interpolis.imgix.net https://script.hotjar.com https://analytics.twitter.com https://ad.doubleclick.net https://googleads.g.doubleclick.net *.visualwebsiteoptimizer.com chart.googleapis.com wingify-assets.s3.amazonaws.com app.vwo.com;font-src 'self' data: *.pingvp.com fonts.gstatic.com js.arcgis.com widget.greenonline.nl https://script.hotjar.com;connect-src 'self' https://google.com/ccm/ https://google.com/pagead/ https://api-engage-eu.sitecorecloud.io/v1.2/browser/create.json.* https://pagead2.googlesyndication.com/pagead/landing https://google.nl/pagead/1p-conversion/accountID/* *.pingvp.com *.mopinion.com *.interpolis.nl dc.services.visualstudio.com *.google-analytics.com https://www.opzeggen.nl interpolis.imgix.net controle.achmea.consentmonitor.nl https://*.hotjar.io wss://*.hotjar.com services.arcgisonline.com adservice.google.com geocode.arcgis.com https://ad.doubleclick.net *.visualwebsiteoptimizer.com app.vwo.com https://www.google.com/pagead/landing https://googleads.g.doubleclick.net/pagead/landing *.coveo.com;media-src 'self' *.pingvp.com *.interpolis.nl;object-src 'self' *.pingvp.com;child-src 'self' blob: t.svtrd.com youtube-nocookie.com www.youtube-nocookie.com *.doubleclick.net *.hotjar.com e.interpolis.nl widgets.bnr.nl www.youtube.com art19.com tpc.googlesyndication.com app.vwo.com formulier.interpolis.nl;frame-ancestors 'self' www.youtube-nocookie.com youtube-nocookie.com *.doubleclick.net e.interpolis.nl https://vars.hotjar.com tpc.googlesyndication.com app.vwo.com *.visualwebsiteoptimizer.com;form-action 'self' t.svtrd.com https://transaction.acceptemail.com *.openstreetmap.org/;manifest-src 'self' t.svtrd.com *.interpolis.nl broker.nxtid.nl;report-uri https://interpolis.ams.report-uri.com/r/t/csp/reportOnly;report-to endpoint-csp-violation-report-only; |
x-content-type-options: |
nosniff |
reporting-endpoints: |
endpoint-csp-violation="https://interpolis.ams.report-uri.com/a/t/g", endpoint-csp-violation-report-only="https://interpolis.ams.report-uri.com/a/t/g" |
request-context: |
appId=cid-v1:4c7146a9-8e45-4eca-8524-bf923c2c2d8d |
accept-ch: |
Sec-CH-UA-Full-Version-List,Sec-CH-UA-Platform-Version,Sec-CH-UA-Arch,Sec-CH-UA-Model,Sec-CH-UA-Bitness |
x-xss-protection: |
1; mode=block |
referrer-policy: |
strict-origin-when-cross-origin |
x-frame-options: |
SAMEORIGIN |
strict-transport-security: |
max-age=31536000 |
vary: |
Accept-Encoding |