max-age=0, must-revalidate, no-cache, no-store
keep-alive
gzip
font-src fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://fonts.gstatic.com *.klarnacdn.net *.fontawesome.com https://fonts.bunny.net maxcdn.bootstrapcdn.com fonts.styla.com data: 'self' 'unsafe-inline'; form-action pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.facebook.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com bid.g.doubleclick.net https://www.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com js.klarna.com *.google.com/ js.mollie.com *.weltpixel.com *.googletagmanager.com *.doubleclick.net 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com *.googleapis.com ebizmarts-website.s3.amazonaws.com downloads.mailchimp.com gallery.mailchimp.com *.klarna.com *.klarnaevt.com *.klarnacdn.net https://firebasestorage.googleapis.com https://www.magezon.com flagpedia.net https://www.mollie.com www.google.de *.cdninstagram.com maps.gstatic.com maps.google.com fonts.googleapis.com fonts.gstatic.com privacy-proxy-server.usercentrics.eu app.usercentrics.eu styla-prod-us.imgix.net *.facebook.com *.reddit.com *.ads-twitter.com t.co *.twitter.com *.bing.com *.klaviyo.com *.clarity.ms *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.google.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com googleads.g.doubleclick.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com *.commerce-payment-services.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com *.cdn-apple.com *.googleapis.com *.gstatic.com chimpstatic.com downloads.mailchimp.com *.list-manage.com https://unpkg.com *.klarna.com *.klarnacdn.net x.klarnacdn.net *.klarnaservices.com widget.freshworks.com m2epro.freshdesk.com *.avada.io *.google.com/ maps.googleapis.com js.mollie.com eu.klarnaevt.com stats.g.doubleclick.net privacy-proxy.usercentrics.eu app.usercentrics.eu api.usercentrics.eu client-scripts.styla.com engine.styla.com client-scripts.stage.eu.magalog.net *.googletagmanager.com *.googleadservices.com *.facebook.net *.redditstatic.com *.reddit.com *.tiktok.com *.ads-twitter.com *.bing.com *.clarity.ms *.klaviyo.com unpkg.com *.doubleclick.net 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com downloads.mailchimp.com *.klarnacdn.net widget.freshworks.com m2epro.freshdesk.com *.fontawesome.com *.googleapis.com https://fonts.bunny.net maxcdn.bootstrapcdn.com *.gstatic.com client-scripts.styla.com engine.styla.com fonts.styla.com *.tagmanager.google.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.googleadservices.com www.google-analytics.com analytics.google.com www.googletagmanager.com vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.googleapis.com *.klarnaevt.com *.klarnacdn.net x.klarnacdn.net *.klarnaservices.com *.klarna.com widget.freshworks.com m2epro.freshdesk.com http://dpm.demdex.net https://get.geojs.io *.avada.io www.gstatic.com maps.googleapis.com graph.instagram.com fonts.googleapis.com *.googlesyndication.com fonts.gstatic.com eu.klarnaevt.com stats.g.doubleclick.net api.usercentrics.eu consent-api.service.consent.usercentrics.eu privacy-proxy.usercentrics.eu graphql.usercentrics.eu aggregator.service.usercentrics.eu config.styla.com redpanda.styla.com seoapi.styla.com product-bridge.styla.com *.facebook.com altcha.net2sell.de *.google-analytics.com *.analytics.google.com *.facebook.net *.redditstatic.com *.reddit.com *.tiktok.com *.twitter.com *.ads-twitter.com *.bing.com *.klaviyo.com *.clarity.ms *.doubleclick.net *.run.app 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
text/html; charset=UTF-8
Thu, 13 Nov 2025 12:40:54 GMT
Wed, 13 Nov 2024 12:40:41 GMT
timeout=60
no-cache
nginx/1.14.1
PHPSESSID=ejg46sugrlri3qvgldl3ifhhgq; expires=Sat, 15 Nov 2025 12:40:54 GMT; Max-Age=172800; path=/; domain=.kennys.de; secure; HttpOnly; SameSite=Lax
max-age=31536000
Accept-Encoding
HIT from Backend
nosniff, nosniff
SAMEORIGIN, SAMEORIGIN
IE=edge
1; mode=block
|