HTTP/1.1 302 Found
Date: Fri, 29 Oct 2021 15:21:05 GMT
Server: Apache
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Thu, 29 Oct 2020 15:21:05 GMT
Content-Security-Policy-Report-Only: font-src 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com *.criteo.com *.paypal.com *.youtube.com *.hotjar.com *.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.wpcloud.trollweb.no www.googletagmanager.com *.hotjar.com *.criteo.com *.cloudfront.net *.paypal.com *.paypalobjects.com *.addwish.com *.google.com *.google.se *.gstatic.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com js.authorize.net jstest.authorize.net js.braintreegateway.com cdn-scripts.signifyd.com www.youtube.com *.wpcloud.trollweb.no www.googletagmanager.com *.hotjar.com *.hotjar.io *.criteo.com *.criteo.net *.cloudfront.net *.paypal.com *.paypalobjects.com *.addwish.com *.google.com *.gstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.wpcloud.trollweb.no 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.wpcloud.trollweb.no *.hotjar.com *.google-analytics.com *.google.com *.google.se *.g.doubleclick.net *.addwish.com *.helloretail.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=bhr5ej2bhmulfk34bror9rau8c; expires=Fri, 29-Oct-2021 16:21:05 GMT; Max-Age=3600; path=/; domain=www.kellfri.se; HttpOnly
Upgrade: h2,h2c
Connection: Upgrade
Location: https://www.kellfri.se/
Content-Type: text/html; charset=UTF-8
HTTP/2 200
date: Fri, 29 Oct 2021 15:21:06 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 29 Oct 2020 15:21:06 GMT
x-magento-tags: FPC
content-security-policy-report-only: font-src 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com *.criteo.com *.paypal.com *.youtube.com *.hotjar.com *.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.wpcloud.trollweb.no www.googletagmanager.com *.hotjar.com *.criteo.com *.cloudfront.net *.paypal.com *.paypalobjects.com *.addwish.com *.google.com *.google.se *.gstatic.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com js.authorize.net jstest.authorize.net js.braintreegateway.com cdn-scripts.signifyd.com www.youtube.com *.wpcloud.trollweb.no www.googletagmanager.com *.hotjar.com *.hotjar.io *.criteo.com *.criteo.net *.cloudfront.net *.paypal.com *.paypalobjects.com *.addwish.com *.google.com *.gstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.wpcloud.trollweb.no 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.wpcloud.trollweb.no *.hotjar.com *.google-analytics.com *.google.com *.google.se *.g.doubleclick.net *.addwish.com *.helloretail.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=ipfeb0rms74a3fgnlm6tmiv95m; expires=Fri, 29-Oct-2021 16:21:06 GMT; Max-Age=3600; path=/; domain=www.kellfri.se; secure; HttpOnly
set-cookie: X-Magento-Vary=4297c96cb895cc8c92de3cc86c0a9739fc52bed4; expires=Fri, 29-Oct-2021 16:21:07 GMT; Max-Age=3600; path=/; secure; HttpOnly
access-control-allow-methods: POST, GET, OPTIONS, DELETE, PUT
access-control-max-age: 1000
access-control-allow-headers: x-requested-with, Content-Type, origin, authorization, accept, client-security-token
content-length: 357380
access-control-allow-origin: *
content-type: text/html; charset=UTF-8
|