DYNAMIC
842f6bf88c59718c-LHR
no-store, no-cache, must-revalidate, max-age=0
keep-alive
gzip
text/html; charset=UTF-8
Tue, 09 Jan 2024 20:27:35 GMT
cloudflare
h3=":443"; ma=86400
upgrade-insecure-requests;
frame-ancestors *.hana.ondemand.com 'self'; object-src 'self' 'unsafe-inline'; media-src *.zdassets.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; font-src https://media.flixcar.com https://www.hirschs.co.za *.klevu.com *.ksearchnet.com *.cloudflare.com *.googleapis.com *.zopim.com *.gstatic.com *.tawk.to *.jsdelivr.net media.flixfacts.com 'unsafe-inline' data: http://js.klevu.com 'self' 'unsafe-inline'; style-src embed.tawk.to https://www.hirschs.co.za getfirebug.com *.klevu.com *.ksearchnet.com *.cloudflare.com *.googleapis.com *.jsdelivr.net www.gstatic.com media.flixcar.com 'unsafe-inline' data: http://js.klevu.com 'self' 'unsafe-inline'; connect-src settings.luckyorange.net dpm.demdex.net lgelectronics.demdex.net www.facebook.com https://tr.snapchat.com https://settings.luckyorange.com https://maps.googleapis.com https://dc.services.visualstudio.com https://media.flixcar.com/ https://www.google.co.za/ geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.klevu.com *.ksearchnet.com *.testfreaks.com http://js.klevu.com *.google.com *.nosto.com *.hotjar.io *.hotjar.com *.doubleclick.net *.zendesk.com *.paypal.com *.tawk.to wss://*.tawk.to *.tawk.link *.addthis.com *.addthisedge.com *.nr-data.net vsb111.tawk.to ekr.zdassets.com api.magento.com commerce.adobedc.net app.mobicredwidget.co.za www.google-analytics.com wss://widget-mediator.zopim.com bam.nr-data.net *.googletagmanager.com security-hub.vaimo.network 'unsafe-eval' data: https://bam.nr-data.net 'self' 'unsafe-inline'; form-action www.googleadservices.com https://tr.snapchat.com secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.facebook.com webchat.jdg.co.za *.jdg.co.za 'self' 'unsafe-inline'; frame-src pixel.everesttech.net www.everestjs.net lgelectronics.demdex.net https://tr.snapchat.com https://tpc.googlesyndication.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.googletagmanager.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.google.com *.nosto.com *.youtube.com *.issuu.com *.hotjar.com *.hotjar.io *.googletagmanager.com *.criteo.net *.criteo.com *.addthis.com *.facebook.com webchat.jdg.co.za *.jdg.co.za https://www.google.com https://www.gstatic.com 'self' 'unsafe-inline'; img-src pixel.everesttech.net cm.everesttech.net cm.g.doubleclick.net googleads.g.doubleclick.net https://widgets.payflex.co.za https://www.hirschs.co.za https://robincontentdesktop.blob.core.windows.net https://pagead2.googlesyndication.com https://static.addtoany.com https://hirschs.co.za widgets.magentocommerce.com 'unsafe-inline' data: www.paypalobjects.com t.paypal.com www.paypal.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.klevu.com *.ksearchnet.com *.cloudflare.com *.google.com *.google.lv *.google.co.za *.google.com.na *.google.na *.gstatic.com *.zopim.com *.nosto.com *.hotjar.com *.hotjar.io *.googletagmanager.com *.zopim.io *.sfdr.co sfdr.co *.tawk.to tawk.link *.tawk.link *.addthis.com *.jsdelivr.net *.facebook.com *.youtube.com *.azurewebsites.net www.google-analytics.com maps.googleapis.com app.mobicredwidget.co.za amcglobal.sc.omtrdc.net media.flixcar.com rt.flix360.com assets.secure.checkout.visa.com http://js.klevu.com https://www.facebook.com 'self' 'unsafe-inline'; script-src www.everestjs.net https://sc-static.net/ https://partpayassets.blob.core.windows.net/widgets/ppQuery-3.2.1.js https://widgets.payflex.co.za https://www.hirschs.co.za https://robincontentdesktop.blob.core.windows.net https://tpc.googlesyndication.com https://tools.luckyorange.com https://selfservice.robinhq.com https://az416426.vo.msecnd.net https://s-eu-1.pushpushgo.com https://prod.flixgvid.flix360.io secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com www.sandbox.paypal.com t.paypal.com s.ytimg.com video.google.com www.vimeo.com www.googletagmanager.com www.google-analytics.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.youtube.com js.klevu.com *.ksearchnet.com *.zopim.com *.videoly.co sfdr.co *.cnetcontent.com *.cloudfront.net *.newrelic.com *.klevu.com *.google.com *.google.lv *.google.co.za *.google.com.na *.google.na *.cloudflare.com *.cloudflareinsights.com *.nosto.com *.hotjar.com *.googletagmanager.com *.criteo.net *.criteo.com *.sfdr.co *.tawk.to *.tawk.link *.jsdelivr.net *.addthis.com *.addthisedge.com *.moatads.com *.mouseflow.com *.nr-data.net *.facebook.com maps.googleapis.com www.googleadservices.com commerce.adobedtm.com magento-recs-sdk.adobe.net static.zdassets.com app.mobicredwidget.co.za www.gstatic.com connect.facebook.net bam.nr-data.net googleads.g.doubleclick.net js.testfreaks.com media.flixfacts.com media.flixcar.com security-hub.vaimo.network http://js.klevu.com https://js-agent.newrelic.com https://bam.nr-data.net https://www.googletagmanager.com https://connect.facebook.net https://www.google.com https://www.gstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; report-uri https://security-hub.vaimo.network/public/api/content-security-policy.php; report-to report-endpoint;
-1
no-cache
{"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/security-hub.vaimo.network\/public\/api\/content-security-policy.php"}]}
max-age=15552000
Accept-Encoding
nosniff
SAMEORIGIN, SAMEORIGIN
Docker
IE=edge
1; mode=block
|