32945
no-store, no-cache, must-revalidate, max-age=0
keep-alive
font-src *.googleapis.com *.gstatic.com 'self' data: *.doubleclick.net *.facebook.com *.digitalbridgehq.com *.elev.io *.fixtuur.com *.goinstore.com *.honey.io *.klevu.com *.ksearchnet.com *.fontawesome.com *.stripe.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.facebook.com *.cardinalcommerce.com *.realexpayments.com *.touch.tech *.paypal.com 3ds-secure.cardcomplete.com www.clicksafe.lloydstsb.com pay.activa-card.com *.wirecard.com acs.sia.eu *.touchtechpayments.com www.securesuite.co.uk rsa3dsauth.com *.monzo.com *.arcot.com *.wlp-acs.com * 'self' 'unsafe-inline'; frame-ancestors *.stripe.com stripe.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net www.googletagmanager.com *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com https://www.google.com/recaptcha/ *.google.com *.doubleclick.net *.facebook.com *.acdcproc.com *.addthis.com *.americanexpress.com *.arcot.com *.braintreegateway.com *.cardinalcommerce.com *.criteo.com *.criteo.net *.digitalbridgehq.com *.fixtuur.com *.flashtalking.com *.google.co.uk *.googlesyndication.com *.hotjar.com *.jotform.com *.kaptcha.com *.klarna.com *.klarnacdn.net *.klarnaservices.com *.lloydsbankinggroup.com *.modirum.com *.monzo.com *.paypal.com *.pinterest.com *.playground.klarna.com *.playground.klarnaservices.com *.realexpayments.com *.rsa3dsauth.co.uk *.sandbox.paypal.com *.touch.tech *.zenaps.com ct.pinterest.com servedby.flashtalking.com c.paypal.com checkout.paypal.com assets.braintreegateway.com pay.google.com * *.stripe.com klarna.com *.klarnaevt.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com *.ftcdn.net *.behance.net t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com validator.swagger.io *.googleapis.com *.gstatic.com 'self' data: *.google.com *.google.bg *.facebook.com *.facebook.net *.doubleclick.net *.googletagmanager.com *.360yield.com *.addthis.com *.adform.net *.adnxs.com *.ads.yieldmo.com *.advertising.com *.amazon-adsystem.com *.amazonaws.com *.awin1.com *.bidswitch.net *.bing.com *.bluekai.com *.bnmla.com *.casalemedia.com *.creativecdn.com *.criteo.com *.criteo.net *.digitaleast.mobi *.dmxleo.com *.elfsight.com *.elfsightcdn.com *.exelator.com *.goinstore.com *.honey.io *.imrworldwide.com *.ivitrack.com *.liadm.com *.mediavine.com *.mediawallahscript.com *.modafurnishings.co.uk *.narrative.io *.outbrain.com *.pinterest.com *.pubmatic.com *.revcontent.com *.rubiconproject.com *.semasio.net *.smaato.net *.smartadserver.com *.socdm.com *.stickyadstv.com *.taboola.com *.tapad.com *.thebrighttag.com *.tvsquared.com *.twiago.com *.yahoo.com *.yieldlab.net *.zdassets.com *.zemanta.com *.zenaps.com *.zendesk.com bat.bing.com beacon.krxd.net contextual.media.net coviyr.modafurnishings.co.uk criteo-partners.tremorhub.com criteo-sync.teads.tv eb2.3lift.com google.com id5-sync.com jadserve.postrelease.com maps.googleapis.com match.sharethrough.com static.elfsight.com visitor.omnitagjs.com www.coupert.com www.google.ae www.google.cn www.google.co.in www.google.co.ma www.google.co.uk www.google.co.za www.google.com.ag www.google.com.au www.google.com.bd www.google.com.eg www.google.com.lb www.google.com.my www.google.com.ph www.google.com.sa www.google.com.tr www.google.com.ua www.google.de www.google.es www.google.fr www.google.gg www.google.im www.google.it www.google.je www.google.lu www.google.nl *.klevu.com *.ksearchnet.com www.sandbox.paypal.com b.stats.paypal.com dub.stats.paypal.com assets.braintreegateway.com c.paypal.com checkout.paypal.com *.paypal.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.googleapis.com *.gstatic.com *.google.com *.google.bg *.googletagmanager.com *.facebook.com *.facebook.net *.doubleclick.net *.google-analytics.com *.app-us1.com *.bing.com *.craftyclicks.co.uk *.criteo.com *.criteo.net *.digitalbridgehq.com *.dwin1.com *.dynamicyield.com *.elev.io *.elfsight.com *.finance-calculator.co.uk *.fixtuur.com *.goinstore.com *.hotjar.com *.jsdelivr.net *.newrelic.com *.nr-data.net *.opentok.com *.pennies.org.uk *.pinimg.com *.responsetap.com *.sciencebehindecommerce.com *.tvsquared.com *.vimeo.com *.zdassets.com *.zenaps.com trackcmp.net js.klevu.com *.ksearchnet.com js.braintreegateway.com assets.braintreegateway.com c.paypal.com pay.google.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.paypal.com songbirdstag.cardinalcommerce.com *.stripe.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.googleapis.com *.doubleclick.net *.facebook.com *.gstatic.com *.googletagmanager.com *.braintreegateway.com *.digitalbridgehq.com *.finance-calculator.co.uk *.fixtuur.com *.goinstore.com *.google.com *.klevu.com *.ksearchnet.com *.fontawesome.com unsafe-inline assets.braintreegateway.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.googleapis.com *.google-analytics.com *.facebook.com *.facebook.net *.google.com *.addthis.com *.amazonaws.com *.analytics.google.com *.app-us1.com *.bing.com *.cardinalcommerce.com *.digitalbridgehq.com *.doubleclick.net *.dynamicyield.com *.elev.io *.elfsight.com *.finance-calculator.co.uk *.fixtuur.com *.hotjar.com *.hotjar.io *.jsdelivr.net *.loggly.com *.my.sentry.io *.nr-data.net *.pennies.org.uk *.pinterest.com *.sciencebehindecommerce.com *.sentry.io *.smooch.io *.tokbox.com *.trustpilot.com *.ucweb.com *.zdassets.com *.zendesk.com *.zuko.io adservice.google.com bat.bing.com eu.prd.impact.fixtuur.com maps.googleapis.com www.google.co.uk www.google.it www.google.je www.google.nl www.wepowerconnections.com *.klevu.com *.ksearchnet.com api.braintreegateway.com api.sandbox.braintreegateway.com client-analytics.braintreegateway.com client-analytics.sandbox.braintreegateway.com *.braintree-api.com *.paypal.com google.com *.stripe.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com 'self' 'unsafe-inline'; child-src assets.braintreegateway.com c.paypal.com *.paypal.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri /csp/report; report-to report-endpoint;
text/html; charset=UTF-8
Fri, 12 Jan 2024 15:39:29 GMT
Sat, 13 Jan 2024 06:30:23 GMT
cache
{"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"\/csp\/report"}]}
max-age=31557600
00-17a985c6d8c8f72b6159f3e8c747f55e-84009caac953fe44-01
Accept-Encoding,Cookie
HIT, HIT
1, 1
nosniff
eyJyZXRyaWVzIjowfQ==
1
SAMEORIGIN
i-376290dfd09cb2ed, i-376290dfd09cb2ed
cache-lhr7370-LHR, cache-dub4321-DUB
1; mode=block
|