date: |
Sat, 05 Oct 2024 14:11:51 GMT |
content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
x-built-with: |
Hyva Themes |
report-to: |
{"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"\/csp_reporter.php"}]} |
content-security-policy-report-only: |
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com fonts.googleapis.com *.googleapis.com data: *.hotjar.com *.zopim.com *.fontawesome.com *.cloudflare.com maxcdn.bootstrapcdn.com 'self' data: www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.facebook.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline'; frame-ancestors www.gstatic.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self'; frame-src www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ *.youtube-nocookie.com *.braintreegateway.com *.paypal.com google.com *.google.com bid.g.doubleclick.net www.google.com cdn.dnky.co *.hotjar.com *.facebook.com *.trustpilot.com *.criteo.com *.weltpixel.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com *.addthis.com *.googleapis.com *.cookieyes.com *.addtoany.com *.resengo.com *.storescan.eu *.doubleclick.net *.joyfotografie.nl 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com data: t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com https://images.unsplash.com maps.googleapis.com maps.gstatic.com *.googleapis.com *.google.com *.google.nl connect.onlinesucces.nl px.ads.linkedin.com stats.g.doubleclick.net *.linkedin.com *.googletagmanager.com gallery.mailchimp.com amcglobal.sc.omtrdc.net cm.everesttech.net *.trustedshops.com *.facebook.com *.zopim.com cdn.jsdelivr.net *.jmango360.com *.datatrics.com *.smaato.net https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ 'self' data: *.onesignal.com onesignal.com *.hsforms.net *.hsforms.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com *.cdninstagram.com *.cookieyes.com cdn-cookieyes.com *.google-analytics.com *.google.de data: 'self' 'unsafe-inline'; script-src *.newrelic.com *.nr-data.net *.commerce-payment-services.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ assets.adobedtm.com amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com googleads.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com maps.googleapis.com maps.gstatic.com fonts.googleapis.com *.googleapis.com *.gstatic.com https://cdn.jsdelivr.net/npm/@ryangjchandler/[email protected]/dist/spruce.umd.js www.google.com/recaptcha/ www.gstatic.com/recaptcha/ *.paypal.com *.googletagmanager.com *.googleadservices.com cdn.dnky.co api.comapi.com *.trackedlink.net snap.licdn.com chimpstatic.com checkout.buckaroo.nl *.adyen.com *.zopim.com *.hotjar.com *.zdassets.com *.sendcloud.sc *.mailchimp.com *.trustedshops.com *.fontawesome.com *.facebook.net *.feedbackcompany.com *.google-analytics.com *.trustpilot.com cdn.jsdelivr.net *.googleoptimize.com *.clarity.ms *.datatrics.com *.criteo.net *.criteo.com cdn.mouseflow.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.onesignal.com onesignal.com https://www.googletagmanager.com tagmanager.google.com unpkg.com s7.addthis.com *.avada.io *.hsforms.net *.hsforms.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com *.marker.io *.addthis.com *.cookieyes.com cdn-cookieyes.com *.addtoany.com *.resengo.com *.cloudflare.com *.klaviyo.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.googleapis.com cdn.dnky.co checkout.buckaroo.nl *.fontawesome.com *.mailchimp.com *.trustpilot.com cdn.jsdelivr.net https://static.klaviyo.com *.cloudflare.com *.onesignal.com onesignal.com tagmanager.google.com maxcdn.bootstrapcdn.com *.gstatic.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com *.klaviyo.com *.cookieyes.com 'self' 'unsafe-inline'; object-src www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline'; media-src *.zopim.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline'; manifest-src www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline'; connect-src *.newrelic.com *.nr-data.net www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com vimeo.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com www.googleadservices.com *.google-analytics.com analytics.google.com www.googletagmanager.com maps.googleapis.com maps.gstatic.com fonts.googleapis.com *.googleapis.com commerce.adobedc.net api.comapi.com stats.g.doubleclick.net *.zdassets.com *.hotjar.com *.hotjar.io *.zopim.com wss://*.zopim.com dpm.demdex.net *.feedbackcompany.com amcglobal.sc.omtrdc.net *.zendesk.com *.clarity.ms *.facebook.com *.datatrics.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.onesignal.com onesignal.com *.facebook.net ekr.zdassets.com/ https://get.geojs.io *.avada.io t.elasticsuite.io *.hsforms.net *.hsforms.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com *.addthis.com ws.hotjar.com *.marker.io *.stape.org *.instagram.com *.cookieyes.com cdn-cookieyes.com *.google.nl *.googlesyndication.com *.klaviyo.com 'self' 'unsafe-inline'; child-src www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com http: https: blob: 'self' 'unsafe-inline'; default-src *.googleapis.com www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri www.leurs.nl www.gartencenterleurs.de www.equidrome.nl www.equidrome.com 'self' 'unsafe-inline'; report-uri /csp_reporter.php; |
strict-transport-security: |
max-age=31536000 |
content-security-policy: |
upgrade-insecure-requests; |
x-content-type-options: |
nosniff |
x-xss-protection: |
1; mode=block |
x-frame-options: |
SAMEORIGIN |
vary: |
Accept-Encoding |
pragma: |
no-cache |
expires: |
-1 |
cache-control: |
no-store, no-cache, must-revalidate, max-age=0 |
cf-cache-status: |
DYNAMIC |
server: |
cloudflare |
cf-ray: |
8cde00cf8f49b8a0-AMS |