HTTP/1.1 302 Found
Server: nginx
Date: Mon, 09 Nov 2020 21:38:22 GMT
Content-Type: text/html; charset=UTF-8
Content-Length: 0
Connection: keep-alive
X-Powered-By: PHP/7.3.16
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Sat, 09 Nov 2019 21:38:22 GMT
Content-Security-Policy-Report-Only: font-src cdn.nznature.co.nz fonts.gstatic.com 'self' 'unsafe-inline'; form-action 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src www.paypal.com www.sandbox.paypal.com js.stripe.com m.stripe.com x.klarnacdn.net klarna.com www.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com cdn.nznature.co.nz www.facebook.com www.google.com www.google.co.nz google-analytics.com privymktg.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com www.googleadservices.com www.google-analytics.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com www.youtube.com js.stripe.com m.stripe.com x.klarnacdn.net klarna.com cdn.nznature.co.nz connect.facebook.net www.gstatic.com www.google.com widget.privy.com downloads.mailchimp.com chimpstatic.com mc.us16.list-manage.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com cdn.nznature.co.nz fonts.googleapis.com assets.privy.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src js.stripe.com m.stripe.com x.klarnacdn.net klarna.com cdn.nznature.co.nz stats.g.doubleclick.net www.google-analytics.com api.privy.com www.facebook.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=b697afcccc13175b904f39ce2ac51ac4; expires=Mon, 09-Nov-2020 22:38:22 GMT; Max-Age=3600; path=/; domain=nznature.com; HttpOnly
Location: https://www.nznature.com/
Access-Control-Allow-Headers: x-requested-with
X-UA-Compatible: IE=edge
HTTP/2 200
server: nginx
date: Mon, 09 Nov 2020 21:38:23 GMT
content-type: text/html; charset=UTF-8
x-powered-by: PHP/7.3.16
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Sat, 09 Nov 2019 21:38:23 GMT
content-security-policy-report-only: font-src cdn.nznature.co.nz fonts.gstatic.com 'self' 'unsafe-inline'; form-action 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src www.paypal.com www.sandbox.paypal.com js.stripe.com m.stripe.com x.klarnacdn.net klarna.com www.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com cdn.nznature.co.nz www.facebook.com www.google.com www.google.co.nz google-analytics.com privymktg.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com www.googleadservices.com www.google-analytics.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com www.youtube.com js.stripe.com m.stripe.com x.klarnacdn.net klarna.com cdn.nznature.co.nz connect.facebook.net www.gstatic.com www.google.com widget.privy.com downloads.mailchimp.com chimpstatic.com mc.us16.list-manage.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com cdn.nznature.co.nz fonts.googleapis.com assets.privy.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src js.stripe.com m.stripe.com x.klarnacdn.net klarna.com cdn.nznature.co.nz stats.g.doubleclick.net www.google-analytics.com api.privy.com www.facebook.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: X-Magento-Vary=fb939bdda356c7711cb90397c3cc089539ba3672; expires=Mon, 09-Nov-2020 22:38:23 GMT; Max-Age=3600; path=/; secure; HttpOnly
vary: Accept-Encoding
access-control-allow-headers: x-requested-with
x-ua-compatible: IE=edge
|