HTTP/1.1 301 Moved Permanently
Server: nginx/1.14.0 (Ubuntu)
Date: Wed, 20 Oct 2021 11:26:14 GMT
Content-Type: text/html
Content-Length: 194
Connection: keep-alive
Location: https://www.tatesbakeshop.com/
HTTP/2 200
date: Wed, 20 Oct 2021 11:26:14 GMT
content-type: text/html; charset=UTF-8
content-length: 127960
set-cookie: AWSALB=/g1SvZj1EOBwii0NjGxBGJc4ag5kxXjyCSY6QILi7qyIsMdK/z4gpTd4U0g0bYlHW01C6Uv+HEMVBijnM+1x0Hwez50QTw+987V5bg18kqvmfQqqUvEExC+k9ew3; Expires=Wed, 27 Oct 2021 11:26:14 GMT; Path=/
set-cookie: AWSALBCORS=/g1SvZj1EOBwii0NjGxBGJc4ag5kxXjyCSY6QILi7qyIsMdK/z4gpTd4U0g0bYlHW01C6Uv+HEMVBijnM+1x0Hwez50QTw+987V5bg18kqvmfQqqUvEExC+k9ew3; Expires=Wed, 27 Oct 2021 11:26:14 GMT; Path=/; SameSite=None; Secure
server: nginx/1.14.0 (Ubuntu)
vary: Accept-Encoding
set-cookie: PHPSESSID=s08vckup6co5rcaf8tj3nuo419; expires=Wed, 20-Oct-2021 12:26:14 GMT; Max-Age=3600; path=/; domain=www.tatesbakeshop.com; secure; HttpOnly
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Tue, 20 Oct 2020 07:13:26 GMT
content-security-policy: font-src *.bootstrapcdn.com *.googleapis.com *.gstatic.com *.cloudapi.de *.fonts.gstatic.com *.cloudflare.com *.jquery.com *.onetrust.com *.googleoptimize.com 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net *.qualtrics.com *.facebook.com *.clarity.ms *.googleoptimize.com 'self' data: 'self' 'unsafe-inline'; frame-ancestors *.qualtrics.com *.facebook.com *.clarity.ms *.optimize.google.com *.googleoptimize.com 'self' data: 'self' 'unsafe-inline'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com js.authorize.net jstest.authorize.net accept.authorize.net *.addthis.com *.youtube.com *.qualtrics.com *.google.com *.demdex.net *.facebook.com *.jotform.com *.cloudapi.de *.clarity.ms *.optimize.google.com *.cloudflare.com *.jquery.com *.onetrust.com 'self' data: *.googleoptimize.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com 'self' data: *.doubleclick.net *.bing.com *.listrakbi.com *.convergetrack.com *.qualtrics.com *.edgecastcdn.net *.paypal.com *.orientaltrading.com *.rfksrv.com *.omtrdc.net *.everesttech.net *.googletagmanager.com *.amazonaws.com *.google.com *.google.co.in *.magentocommerce.com *.facebook.com *.espssl.com *.pinterest.com *.optimize.google.com *.clarity.ms *.cloudflare.com *.jquery.com *.onetrust.com *.googleoptimize.com 'self' 'unsafe-inline'; script-src *.adobedtm.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com *.vimeo.com www.vimeo.com js.authorize.net jstest.authorize.net js.braintreegateway.com cdn-scripts.signifyd.com www.youtube.com sandbox-assets.secure.checkout.visa.com *.addthis.com *.doubleclick.com *.convergetrack.com *.bing.com *.cardinalcommerce.com *.ccdc02.com *.authorize.net *.paypal.com *.orientaltrading.com *.paypalobjects.com *.ytimg.com vimeo.com *.braintreegateway.com *.signifyd.com *.moatads.com *.addthisedge.com *.listrakbi.com *.facebook.com *.facebook.net *.gstatic.com *.listrak.com *.google.com google.com *.googletagmanager.com *.pinimg.com *.cloudapi.de *.clarity.ms *.optimize.google.com *.cloudflare.com *.jquery.com *.onetrust.com 'self' unsafe-inline: *.googleoptimize.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.bootstrapcdn.com *.googleapis.com *.listrakbi.com *.cloudapi.de *.optimize.google.com *.fonts.googleapis.com *.clarity.ms *.cloudflare.com *.jquery.com *.onetrust.com *.googleoptimize.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com js.authorize.net jstest.authorize.net api.authorize.net apitest.authorize.net accept.authorize.net test.authorize.net *.doubleclick.net *.paypal.com *.google-analytics.com *.addthis.com *.cardinalcommerce.com *.cloudapi.de *.cloudflare.com *.jquery.com *.onetrust.com *.pinterest.com *.clarity.ms *.googleoptimize.com *.listrakbi.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
access-control-allow-methods: HEAD, GET, POST, PUT, DELETE, OPTIONS
access-control-allow-origin: *
access-control-allow-headers: *
|