HTTP/1.1 301 Moved Permanently
Server: nginx/1.14.2
Date: Mon, 27 Jun 2022 08:51:49 GMT
Content-Type: text/html
Content-Length: 185
Connection: keep-alive
Location: https://www.frankana.de/
HTTP/2 301
server: nginx/1.14.2
date: Mon, 27 Jun 2022 08:51:50 GMT
content-type: text/html; charset=UTF-8
location: https://www.frankana.de/de/
set-cookie: PHPSESSID=7b0594e8f5f0f3c17b31ceda1abe2150; expires=Mon, 27-Jun-2022 12:51:49 GMT; Max-Age=14400; path=/; domain=www.frankana.de; secure; HttpOnly; SameSite=Lax
content-security-policy: font-src fonts.gstatic.com/ static.heidelpay.com data: *.gstatic.com 'self' data: data: 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net pilot-payflowlink.paypal.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ www.google.com test.frankana.tdintern.de amc.demdex.net *.vimeo.com payment.heidelpay.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.paypalobjects.com t.paypal.com www.paypal.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com validator.swagger.io *.googletagmanager.com *.google-analytics.com blob: *.google.com *.googleapis.com *.google.de *.gstatic.com *.googleusercontent.com *.doubleclick.net static.heidelpay.com *.magentocommerce.com *.ytimg.com cdn.cookielaw.org cdn.frankana.tdintern.de ff.cdn.bloodstream.cloud 'self' data: www.google-analytics.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com www.sandbox.paypal.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.google.com maps.google.com maps.googleapis.com tagmanager.google.com www.gstatic.com static.heidelpay.com cdn.cookielaw.org *.onetrust.com *.googleapis.com *.youtube.com *.gstatic.com www.googletagmanager.com www.googleadservices.com www.google-analytics.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.google.com *.google.de *.gstatic.com cdn.cookielaw.org *.googleapis.com www.googletagmanager.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com * 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.sandbox.paypal.com www.paypalobjects.com www.paypal.com *.google-analytics.com *.doubleclick.net payment.heidelpay.com api.heidelpay.com *.demdex.net *.omtrdc.net cdn.cookielaw.org maps.googleapis.com t.elasticsuite.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src api.heidelpay.com *.googleapis.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
content-encoding: gzip
vary: Accept-Encoding
pragma: no-cache
expires: -1
cache-control: no-store, no-cache, must-revalidate, max-age=0
HTTP/2 200
server: nginx/1.14.2
date: Mon, 27 Jun 2022 08:51:50 GMT
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
vary: Accept-Encoding
content-security-policy: font-src fonts.gstatic.com/ static.heidelpay.com data: *.gstatic.com 'self' data: data: 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net pilot-payflowlink.paypal.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src fast.amc.demdex.net *.adobe.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ www.google.com test.frankana.tdintern.de amc.demdex.net *.vimeo.com payment.heidelpay.com 'self' 'unsafe-inline'; img-src assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com data: www.paypalobjects.com t.paypal.com www.paypal.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com validator.swagger.io *.googletagmanager.com *.google-analytics.com blob: *.google.com *.googleapis.com *.google.de *.gstatic.com *.googleusercontent.com *.doubleclick.net static.heidelpay.com *.magentocommerce.com *.ytimg.com cdn.cookielaw.org cdn.frankana.tdintern.de ff.cdn.bloodstream.cloud 'self' data: www.google-analytics.com data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com www.sandbox.paypal.com t.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.google.com maps.google.com maps.googleapis.com tagmanager.google.com www.gstatic.com static.heidelpay.com cdn.cookielaw.org *.onetrust.com *.googleapis.com *.youtube.com *.gstatic.com www.googletagmanager.com www.googleadservices.com www.google-analytics.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.google.com *.google.de *.gstatic.com cdn.cookielaw.org *.googleapis.com www.googletagmanager.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com * 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net www.sandbox.paypal.com www.paypalobjects.com www.paypal.com *.google-analytics.com *.doubleclick.net payment.heidelpay.com api.heidelpay.com *.demdex.net *.omtrdc.net cdn.cookielaw.org maps.googleapis.com t.elasticsuite.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src api.heidelpay.com *.googleapis.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
pragma: no-cache
expires: -1
cache-control: no-store, no-cache, must-revalidate, max-age=0
accept-ranges: bytes
|