HTTP/1.1 301
Set-Cookie: dtCookie=v_4_srv_49_sn_ACA5D5A47F70FD0B16C59C803EBC6031_perc_20149_ol_1_app-3Aea7c4b59f27d43eb_0_rcs-3Acss_0; Path=/; Domain=.folica.com; secure
X-OneAgent-JS-Injection: true
Server-Timing: dtRpid;desc="400642479", dtSInfo;desc="0"
Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate
Pragma: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
Set-Cookie: JSESSIONID=8A8E75029D5FAFF2E69E1356B7E5BC84; Path=/; HttpOnly
Set-Cookie: chumewe_user=c55c511a-3b2b-4160-aa06-b47cb2e2b295; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=157784630; Expires=Fri, 15-Jan-2027 16:11:25 GMT; SameSite=None; Secure
Set-Cookie: chumewe_sess=f9edc4ff-6e0a-4d3e-bfd9-737c8bddf3b8; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=14400; Expires=Sat, 15-Jan-2022 15:07:35 GMT; SameSite=None; Secure
Set-Cookie: locale_V6=en_US; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=31556926; Expires=Sun, 15-Jan-2023 16:56:21 GMT; SameSite=None; Secure
Location: https://us.lookfantastic.com/folica.list
Transfer-Encoding: chunked
Date: Sat, 15 Jan 2022 11:07:34 GMT
HTTP/2 200
set-cookie: dtCookie=v_4_srv_38_sn_109D1BB9601344AE48EA706E26350140_perc_100000_ol_0_mul_1_app-3Aff0ed2987e4aa7e2_1_rcs-3Acss_0; Path=/; Domain=.lookfantastic.com; secure
x-oneagent-js-injection: true
server-timing: dtRpid;desc="1926677167", dtSInfo;desc="0"
cache-control: private, max-age=0, no-cache, no-store, must-revalidate
pragma: no-cache
expires: Thu, 01 Jan 1970 00:00:00 GMT
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
set-cookie: JSESSIONID=034AEFBD8C116D2C4AFA2F0EF30E4BBC; Path=/; Secure; HttpOnly
set-cookie: chumewe_user=439dd39b-918e-482c-8e12-de1c401037d7; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=157784630; Expires=Fri, 15-Jan-2027 16:11:26 GMT; SameSite=None; Secure
set-cookie: chumewe_sess=02fbc453-7ead-4f4c-9298-0c6e9be4c1f3; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=14400; Expires=Sat, 15-Jan-2022 15:07:36 GMT; SameSite=None; Secure
set-cookie: locale_V6=en_US; Version=1; Domain=.us.lookfantastic.com; Path=/; Max-Age=31556926; Expires=Sun, 15-Jan-2023 16:56:22 GMT; SameSite=None; Secure
set-cookie: csrf_token=68127278052859417982; Version=1; Path=/; SameSite=None; HttpOnly; Secure
content-security-policy-report-only: child-src 'self' https://www.googletagmanager.com https://*.liveperson.net https://cdn.appdynamics.com https://*.lpsnmedia.net https://www.facebook.com https://connect.facebook.net https://*.google.com https://widget.trustpilot.com https://*.doubleclick.net https://www.youtube.com https://static.criteo.net https://*.criteo.com https://wb.messengerpeople.com https://ln-rules.rewardstyle.com https://player.vimeo.com https://*.hotjar.com https://*.akamaihd.net https://*.attn.tv https://*.recaptcha.net https://isitetv.com https://*.translate.naver.net https://tr.snapchat.com https://tr6.snapchat.com https://www.shoplooks.com https://api.bam-x.com https://www.pinterest.com; connect-src 'self' https://*.thcdn.com https://*.ingest.sentry.io https://*.pingdom.net https://*.doubleclick.net https://*.google-analytics.com https://capture.trackjs.com https://fp.zenaps.com https://www.facebook.com https://*.google.com https://*.thehut.net https://ct.pinterest.com https://services.postcodeanywhere.co.uk https://*.akamaihd.net https://*.sciencebehindecommerce.com https://*.googleapis.com https://*.hotjar.com wss://*.hotjar.com https://*.trustpilot.com https://*.pinterest.com https://*.bing.com https://*.doubleclick.net https://events.attentivemobile.com https://connect.facebook.net https://*.baidu.com https://lookfantastic.attn.tv https://*.parcellab.com https://ct.pinterest.com https://api.bam-x.com https://events.release.narrativ.com https://tr.snapchat.com https://privacyportal-eu.onetrust.com; default-src 'none'; font-src 'self' data: https://*.thcdn.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://fonts.gstatic.com https://fonts.googleapis.com https://static.thgcdn.cn; form-action 'self' https://www.facebook.com https://us.lookfantastic.com https://m.us.lookfantastic.com https://checkout.us.lookfantastic.com https://www.glossybox.com https://connect.facebook.net https://www.glossybox.at https://www.glossybox.ch https://www.glossybox.co.uk https://www.glossybox.de https://www.glossybox.fi https://www.glossybox.fr https://www.glossybox.ie https://www.glossybox.no https://www.glossybox.se https://www.glossybox.dk https://tr.snapchat.com; img-src 'self' data: https://*.thcdn.com https://col.eum-appdynamics.com https://usage.trackjs.com https://*.lpsnmedia.net https://*.doubleclick.net https://www.google-analytics.com https://*.google.com https://cx.atdmt.com https://www.zenaps.com https:; media-src 'self' https://*.thcdn.com https://*.lpsnmedia.net https://static.thgcdn.cn; object-src 'self' https://*.thcdn.com https://www.youtube.com; report-uri https://csp.thehut.net/cspReport.txt; script-src 'self' 'unsafe-eval' 'unsafe-inline' data: https://*.thcdn.com https://*.thehut.net https://rum-static.pingdom.net https://*.liveperson.net https://*.lpsnmedia.net https://*.doubleclick.net https://static.cdn-apple.com https://*.liveperson.com https://google.com https://www.googletagmanager.com https://cdnjs.cloudflare.com https://fp.zenaps.com https://www.youtube.com https://www.google-analytics.com https://*.google.com https://connect.facebook.net https://*.bing.com https://widget.trustpilot.com https://s.ytimg.com https://www.googletagservices.com https://*.googleapis.com https://www.facebook.com https://www.googleadservices.com https://*.gstatic.com https://*.gstatic.cn https://www.dwin1.com https://cdn.trackjs.com https://seal.digicert.com https://remote.captcha.com https://static.criteo.net https://*.criteo.com https://ln-rules.rewardstyle.com https://*.akamaihd.net https://*.recaptcha.net https://*.sciencebehindecommerce.com https://*.microsofttranslator.com https://*.hotjar.com https://*.attn.tv https://*.trustpilot.com https://*.translate.naver.net https://*.doubleclick.net https://*.google-analytics.com https://static.ads-twitter.com https://*.baidu.com https://sc-static.net https://*.google.co.uk https://google.co.uk https://*.shoplooks.com https://slooks.top https://slooks.me https://lantern.roeyecdn.com https://lantern.roeye.com https://static.thgcdn.cn https://s.pinimg.com https://static.narrativ.com https://geolocation.onetrust.com; style-src 'self' 'unsafe-inline' https://*.thcdn.com https://*.google.com https://*.googleapis.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://*.googleapis.com https://*.translate.naver.net https://*.microsofttranslator.com https://www.shoplooks.com https://static.shoplooks.com https://cdn.parcellab.com https://static.thgcdn.cn; upgrade-insecure-requests; report-to report-endpoint
referrer-policy: unsafe-url
x-xss-protection: 1; mode=block; report=/xssProtection.txt
strict-transport-security: max-age=31536000; includeSubDomains; preload
report-to: {"group":"report-endpoint","max_age":86400,"endpoints":[{"url":"https://csp.thehut.net/cspReport.txt","priority":1,"weight":1}],"include_subdomains":true}
vary: accept-encoding
content-type: text/html;charset=UTF-8
date: Sat, 15 Jan 2022 11:07:35 GMT
set-cookie: NSC_mc_wtsw_efgbvmu_xfctsw_8010_H=ffffffff09031f2045525d5f4f58455e445a4a42297a;expires=Sat, 15-Jan-2022 14:07:36 GMT;path=/;secure;httponly
|