HTTP/1.1 301
Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate
Pragma: no-cache
Expires: Thu, 01 Jan 1970 00:00:00 GMT
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
Set-Cookie: JSESSIONID=8E3971A296406ECDD6BDDB8204974FB9; Path=/; HttpOnly
Set-Cookie: chumewe_user=c5b55a82-9fb2-43a2-9166-d8cd5145cc2a; Version=1; Domain=.zavvi.it; Path=/; Max-Age=157784630; Expires=Wed, 21-Oct-2026 13:16:03 GMT; SameSite=None; Secure
Set-Cookie: chumewe_sess=8e32aea2-feb9-4c17-93e3-a6a819108d34; Version=1; Domain=.zavvi.it; Path=/; Max-Age=14400; Expires=Thu, 21-Oct-2021 12:12:13 GMT; SameSite=None; Secure
Set-Cookie: locale_V6=it_IT; Version=1; Domain=.zavvi.it; Path=/; Max-Age=31556926; Expires=Fri, 21-Oct-2022 14:00:59 GMT; SameSite=None; Secure
Location: https://www.zavvi.it/
Transfer-Encoding: chunked
Date: Thu, 21 Oct 2021 08:12:12 GMT
HTTP/2 200
cache-control: private, max-age=0, no-cache, no-store, must-revalidate
pragma: no-cache
expires: Thu, 01 Jan 1970 00:00:00 GMT
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
set-cookie: JSESSIONID=F8050D4D95709FD86A9AA12C24B1C7CE; Path=/; Secure; HttpOnly
set-cookie: chumewe_user=4fe503cb-f44d-4e6b-8d4a-38526c088fd6; Version=1; Domain=.zavvi.it; Path=/; Max-Age=157784630; Expires=Wed, 21-Oct-2026 13:16:03 GMT; SameSite=None; Secure
set-cookie: chumewe_sess=5dcaf9a6-6a6a-4fe6-b839-41bce07689e0; Version=1; Domain=.zavvi.it; Path=/; Max-Age=14400; Expires=Thu, 21-Oct-2021 12:12:13 GMT; SameSite=None; Secure
set-cookie: locale_V6=it_IT; Version=1; Domain=.zavvi.it; Path=/; Max-Age=31556926; Expires=Fri, 21-Oct-2022 14:00:59 GMT; SameSite=None; Secure
set-cookie: csrf_token=05220924698488682562; Version=1; Path=/; SameSite=None; HttpOnly; Secure
content-security-policy: child-src 'self' https://www.googletagmanager.com https://*.liveperson.net https://cdn.appdynamics.com https://*.lpsnmedia.net https://www.facebook.com https://connect.facebook.net https://*.google.com https://widget.trustpilot.com https://*.doubleclick.net https://www.youtube.com https://static.criteo.net https://*.criteo.com https://wb.messengerpeople.com https://pay.google.com https://*.akamaihd.net https://*.translate.naver.net https://*.recaptcha.net https://tpc.googlesyndication.com https://tr.snapchat.com; connect-src 'self' https://*.thcdn.com https://*.ingest.sentry.io https://*.pingdom.net https://*.doubleclick.net https://*.google-analytics.com https://capture.trackjs.com https://fp.zenaps.com https://www.facebook.com https://*.google.com https://*.thehut.net https://services.postcodeanywhere.co.uk https://*.sciencebehindecommerce.com https://*.akamaihd.net https://*.googleapis.com https://*.trustpilot.com https://*.pinterest.com https://*.doubleclick.net https://*.bing.com https://connect.facebook.net https://*.baidu.com https://*.parcellab.com; font-src 'self' data: https://*.thcdn.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://fonts.gstatic.com https://fonts.googleapis.com; form-action 'self' https://www.facebook.com https://connect.facebook.net https://www.zavvi.it https://m.zavvi.it https://checkout.zavvi.it https://tr.snapchat.com; img-src 'self' data: https://*.thcdn.com https://col.eum-appdynamics.com https://usage.trackjs.com https://*.lpsnmedia.net https://*.doubleclick.net https://www.google-analytics.com https://*.google.com https://cx.atdmt.com https://www.zenaps.com https:; media-src 'self' https://*.thcdn.com https://*.lpsnmedia.net; object-src 'self' https://*.thcdn.com https://www.youtube.com; report-uri https://csp.thehut.net/cspReport.txt; script-src 'self' 'unsafe-eval' 'unsafe-inline' data: https://*.thcdn.com https://*.thehut.net https://rum-static.pingdom.net https://*.liveperson.net https://*.lpsnmedia.net https://*.doubleclick.net https://static.cdn-apple.com https://*.liveperson.com https://www.googletagmanager.com https://cdnjs.cloudflare.com https://fp.zenaps.com https://www.youtube.com https://www.google-analytics.com https://*.google.com https://connect.facebook.net https://bat.bing.com https://widget.trustpilot.com https://s.ytimg.com https://www.googletagservices.com https://*.googleapis.com https://www.facebook.com https://www.googleadservices.com https://*.gstatic.cn https://*.gstatic.com https://www.dwin1.com https://cdn.trackjs.com https://*.criteo.com https://static.criteo.net https://*.recaptcha.net https://*.sciencebehindecommerce.com https://*.akamaihd.net https://*.microsofttranslator.com https://google.com https://*.trustpilot.com https://*.translate.naver.net https://*.doubleclick.net https://*.google-analytics.com https://tpc.googlesyndication.com https://*.baidu.com https://sc-static.net https://*.google.co.uk https://google.co.uk; style-src 'self' 'unsafe-inline' https://*.thcdn.com https://*.google.com https://*.googleapis.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://*.googleapis.com https://*.translate.naver.net https://*.microsofttranslator.com https://cdn.parcellab.com; upgrade-insecure-requests; report-to report-endpoint
referrer-policy: unsafe-url
x-xss-protection: 1; mode=block; report=/xssProtection.txt
strict-transport-security: max-age=31536000; includeSubDomains; preload
report-to: {"group":"report-endpoint","max_age":86400,"endpoints":[{"url":"https://csp.thehut.net/cspReport.txt","priority":1,"weight":1}],"include_subdomains":true}
vary: accept-encoding
content-type: text/html;charset=UTF-8
date: Thu, 21 Oct 2021 08:12:12 GMT
set-cookie: NSC_mc_wtsw_efgbvmu_xfctsw_8010_C=ffffffff09021f0845525d5f4f58455e445a4a42297a;expires=Thu, 21-Oct-2021 11:12:13 GMT;path=/;secure;httponly
|