HTTP/1.1 301 Moved Permanently
date: Thu, 11 Nov 2021 08:37:42 GMT
content-type: text/html; charset=iso-8859-1
server: Apache
content-security-policy: upgrade-insecure-requests
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
expect-ct: max-age=7776000, enforce
referrer-policy: no-referrer-when-downgrade
strict-transport-security: max-age=31536000; includeSubDomains
x-frame-options: SAMEORIGIN
location: https://heraldiker.com/
x-iplb-request-id: D17E5643:C6A6_D5BA2113:0050_618CD656_B24F:3D5A
x-iplb-instance: 30823
HTTP/2 301
date: Thu, 11 Nov 2021 08:37:43 GMT
content-type: text/html; charset=UTF-8
server: Apache
x-powered-by: PHP/7.4
strict-transport-security: max-age=31536000; includeSubDomains
x-xss-protection: 1; mode=block
x-content-type-options: nosniff
referrer-policy: no-referrer-when-downgrade
expect-ct: max-age=7776000, enforce
x-frame-options: SAMEORIGIN
permissions-policy: accelerometer=(self), autoplay=(self), camera=(), encrypted-media=(), gyroscope=(self), magnetometer=(self), microphone=(), midi=(), payment=(self), picture-in-picture=(self), sync-xhr=(self), usb=(), interest-cohort=(self), document-domain=(self)
x-redirect-by: WordPress
content-security-policy: upgrade-insecure-requests
location: https://www.heraldiker.com/
permissions-policy: autoplay '*'; camera 'none'; payment 'self'; geolocation 'none'; microphone 'none'
content-security-policy-report-only: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: ; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: www.google-analytics.com ssl.google-analytics.com stats.g.doubleclick.net ajax.googleapis.com maps.google.com maps.gstatic.com maps.googleapis.com translate.googleapis.com translate.google.com www.googletagmanager.com; style-src 'self' 'unsafe-inline' data: fonts.googleapis.com maps.googleapis.com translate.googleapis.com; img-src 'self' data: secure.gravatar.com www.gravatar.com www.google-analytics.com stats.g.doubleclick.net translate.googleapis.com translate.google.com www.google.com www.gstatic.com www.googletagmanager.com; connect-src 'self' www.google-analytics.com translate.googleapis.com; font-src 'self' data: fonts.gstatic.com; block-all-mixed-content; report-uri https://www.heraldiker.com?gdsih-csp-report;
x-xss-protection: 1; mode=block; report=https://www.heraldiker.com?gdsih-xxp-report;
HTTP/2 200
date: Thu, 11 Nov 2021 08:37:43 GMT
content-type: text/html; charset=UTF-8
server: Apache
strict-transport-security: max-age=31536000; includeSubDomains
content-security-policy: upgrade-insecure-requests
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
expect-ct: max-age=7776000, enforce
referrer-policy: no-referrer-when-downgrade
x-frame-options: SAMEORIGIN
vary: User-Agent,Accept-Encoding
accept-ranges: bytes
permissions-policy: autoplay '*'; camera 'none'; payment 'self'; geolocation 'none'; microphone 'none'
content-security-policy-report-only: default-src 'self' 'unsafe-inline' 'unsafe-eval' data: ; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: www.google-analytics.com ssl.google-analytics.com stats.g.doubleclick.net ajax.googleapis.com maps.google.com maps.gstatic.com maps.googleapis.com translate.googleapis.com translate.google.com www.googletagmanager.com; style-src 'self' 'unsafe-inline' data: fonts.googleapis.com maps.googleapis.com translate.googleapis.com; img-src 'self' data: secure.gravatar.com www.gravatar.com www.google-analytics.com stats.g.doubleclick.net translate.googleapis.com translate.google.com www.google.com www.gstatic.com www.googletagmanager.com; connect-src 'self' www.google-analytics.com translate.googleapis.com; font-src 'self' data: fonts.gstatic.com; block-all-mixed-content; report-uri https://www.heraldiker.com?gdsih-csp-report;
x-xss-protection: 1; mode=block; report=https://www.heraldiker.com?gdsih-xxp-report;
cache-control: max-age=0, no-cache, no-store, must-revalidate
pragma: no-cache
expires: Mon, 29 Oct 1923 20:30:00 GMT
|