HTTP/1.1 301 Moved Permanently
Date: Wed, 20 Oct 2021 04:53:39 GMT
Connection: keep-alive
Cache-Control: max-age=3600
Expires: Wed, 20 Oct 2021 05:53:39 GMT
Location: https://boxycharm.com/
Server: cloudflare
CF-RAY: 6a0fa4cadab92a15-ORD
HTTP/2 301
date: Wed, 20 Oct 2021 04:53:39 GMT
cache-control: max-age=3600
expires: Wed, 20 Oct 2021 05:53:39 GMT
location: https://www.boxycharm.com/
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
server: cloudflare
cf-ray: 6a0fa4cb3c18f242-ORD
HTTP/2 200
date: Wed, 20 Oct 2021 04:53:39 GMT
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
x-powered-by: PHP/7.3.27
x-magento-tags: store,cms_b,cat_c,cms_p_2,CONFIG,addon_store_event,cms_b_empty_minicart_content,cms_b_footer_content,cms_b_addonstore_minicart_info-block,cms_b_inactive_subscription_notice,cms_b_homepage_current_box_wl_off,cms_b_footer_captcha_terms,cms_b_boxypopup_free_shipping_amount_message,cms_b_boxypopup_free_shipping_message,cms_b_boxypopup_free_shipping_message_dynamic,cms_b_boxypopup_free_shipping_message_static
content-security-policy-report-only: font-src *.gstatic.com *.googleapis.com 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.facebook.com *.snapchat.com *.googlesyndication.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.googletagmanager.com https://c.paypal.com https://assets.braintreegateway.com https://woobox.com https://js.stripe.com https://www.google.com *.doubleclick.net https://www.youtube.com *.facebook.com *.snapchat.com *.emjcd.com *.dotomi.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com www.paypalobjects.com t.paypal.com *.ftcdn.net *.behance.net data: www.paypal.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.gstatic.com *.connect.facebook.net *.boxycharm.com *.collect.igodigital.com *.outbrain.com *.google.by *.paypal.com 'self' data: *.doubleclick.net *.google.com *.pinterest.com *.bing.com *.postcodeanywhere.co.uk *.reddit.com *.cdnwidget.com *.facebook.com *.boxytest.com *.boxypreprod.com http://static.boxycharm.com *.googletagmanager.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com secure.authorize.net test.authorize.net www.googleadservices.com www.google-analytics.com www.paypalobjects.com js.braintreegateway.com www.paypal.com www.sandbox.paypal.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.youtube.com www.googletagmanager.com *.gstatic.com *.googlesyndication.com *.boxytest.com *.ibytedtos.com *.facebook.net *.collect.igodigital.com *.outbrain.com *.stridespark.com https://js.braintreegateway.com https://c.paypal.com/ *.google.com https://woobox.com/ *.pcapredict.com *.googletagmanager.com *.pinimg.com *.bing.com *.alooma.com *.getambassador.com *.fullstory.com *.cloudfront.net *.cdnwidget.com *.doubleclick.net https://youtube.com/ *.newrelic.com *.nr-data.net *.ravelin.net *.postcodeanywhere.co.uk https://mbsy.co/ *.treasuredata.com *.yimg.com https://sc-static.net/ *.stackadapt.com *.yahoo.com *.carthook.com *.jquery.com *.tiktok.com *.ipstatp.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.gstatic.com *.googleapis.com *.postcodeanywhere.co.uk *.srv.stackadapt.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.bing.com *.tiktok.com *.tt.omtrdc.net *.srv.stackadapt.com *.cardinalcommerce.com https://payments.sandbox.braintree-api.com https://origin-analytics-sand.sandbox.braintree-api.com https://www.paypal.com *.fullstory.com *.pinterest.com *.alooma.com *.cloudflare.com *.nr-data.net *.postcodeanywhere.co.uk *.ravelin.net *.grin.co *.google-analytics.com *.braintreegateway.com *.cdnbasket.net *.cdnwidget.com *.getambassador.com *.pusherapp.com *.yimg.com *.doubleclick.net www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com yotpo.com www.yotpo.com p.yotpo.com staticw2.yotpo.com w2.yotpo.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
strict-transport-security: max-age=31536000
content-security-policy: upgrade-insecure-requests;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-mag-host: production-web17177
x-varnish: 32200920 33793560
via: 1.1 varnish (Varnish/6.3)
x-magento-cache-debug: HIT
grace: none
pragma: no-cache
expires: -1
cache-control: no-store, no-cache, must-revalidate, max-age=0
section-io-id: 952cc27ac85d2ead58b53bcac36100cd
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
server: cloudflare
cf-ray: 6a0fa4cbbc316320-ORD
|