HTTP/1.1 302 Found
Date: Mon, 20 Apr 2020 19:48:01 GMT
Server: Apache
Location: https://www.cashback-cards.ch
Content-Length: 213
Content-Type: text/html; charset=iso-8859-1
HTTP/2 302
date: Mon, 20 Apr 2020 19:48:02 GMT
server: Apache
vary: Referer,User-Agent
set-cookie: JSESSIONID=438BEE3E9028DD869AA102E4A932A5F0; Path=/; Secure; HttpOnly
set-cookie: ncs-S=ASQgiC9FHm99aI5x9sG9AQNBgnCIZ5AejLscLL!IcNNrQf!nW9nj3pdw52GB5lzq11oH; Path=/; Secure; HttpOnly; SameSite=Lax
content-length: 0
content-security-policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.swisscard.ch *.google.com *.google.ch *.googleapis.com player.vimeo.com *.vimeocdn.com www.googletagmanager.com *.google-analytics.com www.googletagservices.com use.typekit.net p.typekit.net performance.typekit.net *.doubleclick.net *.gstatic.com *.googleadservices.com bat.bing.com webservice.cybwell.ch; upgrade-insecure-requests
x-frame-options: sameorigin
x-xss-protection: 1; mode=block
pragma: no-cache
cache-control: no-cache
expires: Thu, 01 Jan 1970 01:00:00 CET
location: /en
content-language: en
strict-transport-security: max-age=16070400
x-content-type-options: nosniff
referrer-policy: same-origin
feature-policy: autoplay 'self'; camera 'self'; display-capture 'self'; document-domain 'self'; encrypted-media 'self'; fullscreen 'self'; geolocation 'self'; microphone 'self'; midi 'self'; payment 'self'; vr 'self'; xr 'self'
HTTP/2 200
date: Mon, 20 Apr 2020 19:48:02 GMT
server: Apache
vary: Referer,Accept-Encoding,User-Agent
set-cookie: JSESSIONID=FDDC89E1A32B6AC799A1EF1E5255428B; Path=/; Secure; HttpOnly
set-cookie: ncs-S=AVKzddUubbB5PHjcld3de4jWvieutaT6jYhmPrW8MLlyoBUHn!Da7lfmYcxYt__ph9jd; Path=/; Secure; HttpOnly; SameSite=Lax
content-security-policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.swisscard.ch *.google.com *.google.ch *.googleapis.com player.vimeo.com *.vimeocdn.com www.googletagmanager.com *.google-analytics.com www.googletagservices.com use.typekit.net p.typekit.net performance.typekit.net *.doubleclick.net *.gstatic.com *.googleadservices.com bat.bing.com webservice.cybwell.ch; upgrade-insecure-requests
x-frame-options: sameorigin
x-xss-protection: 1; mode=block
pragma: no-cache
cache-control: no-cache, no-store, must-revalidate, max-age=0
expires: Wed, 31 Dec 1969 16:00:00 PST
content-security-policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.swisscard.ch *.google.com *.google.ch *.googleapis.com player.vimeo.com *.vimeocdn.com www.googletagmanager.com *.google-analytics.com www.googletagservices.com use.typekit.net p.typekit.net performance.typekit.net *.doubleclick.net *.gstatic.com *.googleadservices.com bat.bing.com webservice.cybwell.ch; upgrade-insecure-requests
x-frame-options: sameorigin
x-xss-protection: 1; mode=block
content-security-policy: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: *.swisscard.ch *.google.com *.google.ch *.googleapis.com player.vimeo.com *.vimeocdn.com www.googletagmanager.com *.google-analytics.com www.googletagservices.com use.typekit.net p.typekit.net performance.typekit.net *.doubleclick.net *.gstatic.com *.googleadservices.com bat.bing.com webservice.cybwell.ch; upgrade-insecure-requests
x-frame-options: sameorigin
x-xss-protection: 1; mode=block
strict-transport-security: max-age=16070400
x-content-type-options: nosniff
referrer-policy: same-origin
feature-policy: autoplay 'self'; camera 'self'; display-capture 'self'; document-domain 'self'; encrypted-media 'self'; fullscreen 'self'; geolocation 'self'; microphone 'self'; midi 'self'; payment 'self'; vr 'self'; xr 'self'
content-type: text/html;charset=UTF-8
|