HTTP/1.1 301 Moved Permanently
Server: awselb/2.0
Date: Sun, 12 Sep 2021 13:02:44 GMT
Content-Type: text/html
Content-Length: 134
Connection: keep-alive
Location: https://www.heine.de:443/
HTTP/2 200
date: Sun, 12 Sep 2021 13:02:44 GMT
content-type: text/html; charset=utf-8
content-length: 166294
x-webapp-version: local
set-cookie: wcc-hede=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJ1c2VySWQiOiJEWVdaWVNrbk1XM2hWMXQxNEwtN2wiLCJiYXNrZXRLZXkiOiJEWVdaWVNrbk1XM2hWMXQxNEwtN2wiLCJ3aXNobGlzdEtleSI6IkRZV1pZU2tuTVczaFYxdDE0TC03bCIsImlhdCI6MTYzMTQ1MTc2NH0.eLsH-5bo0XfTBzWtz0Sy_CSK4RjNRgzplp-iJ_ZPRGc; Max-Age=5184000; Domain=.heine.de; Path=/; Expires=Thu, 11 Nov 2021 13:02:44 GMT; Secure; SameSite=Lax
set-cookie: visitIdChanged=true; Max-Age=1800; Domain=.heine.de; Path=/; Expires=Sun, 12 Sep 2021 13:32:44 GMT; Secure; SameSite=Lax
set-cookie: visitId=hN_wQ0bEGyScy7HGnXlaf; Max-Age=1800; Domain=.heine.de; Path=/; Expires=Sun, 12 Sep 2021 13:32:44 GMT; Secure; SameSite=Lax
set-cookie: ecc=800; Max-Age=2592000; Domain=.heine.de; Path=/; Expires=Tue, 12 Oct 2021 13:02:44 GMT; Secure; SameSite=Lax
set-cookie: eccCurrent=800; Max-Age=2592000; Domain=.heine.de; Path=/; Expires=Tue, 12 Oct 2021 13:02:44 GMT; Secure; SameSite=Lax
set-cookie: trigger=undefined; Path=/; Expires=Thu, 01 Jan 1970 00:00:00 GMT
content-security-policy: default-src 'self' cdn.wcc.heine.de https://cdn.wcc.heine.de/graphql https://api.prod.wcc.heine.de/graphql; base-uri 'self'; font-src 'self' cdn.wcc.heine.de fonts.gstatic.com data:; img-src *; connect-src 'self' https://cdn.wcc.heine.de/graphql https://api.prod.wcc.heine.de/graphql te.heine.de tp.heine.de wasp.heine.de *.facebook.com *.contentsquare.net *.cookielaw.org api.sovendus.com bat.bing.com benefits.sovendus.com chat.userlike.com identification-api.sovendus.com press-tracking-api.sovendus.com wss://chat.userlike.com www.google-analytics.com www.jsctool.com https://adservice.google.com/pagead https://graphql.contentful.com https://privacyportal-eu.onetrust.com https://www.google.com/pagead *.creativecdn.com *.optimizely.com; object-src 'none'; child-src blob:; script-src * 'unsafe-inline' 'unsafe-eval'; style-src 'self' cdn.wcc.heine.de www.googletagmanager.com fonts.googleapis.com 'unsafe-inline'; frame-src 'self' checkout-m.heine.de checkout.heine.de *.awin1.com *.criteo.net *.criteo.com *.adrtx.net *.contentsquare.net www.googletagmanager.com www.facebook.com www.youtube.com dmp.theadex.com 5127363.fls.doubleclick.net www.jsctool.com api.sovendus.com benefits.sovendus.com https://creativecdn.com/; media-src 'self' cdn.wcc.heine.de cdn.witt.info/ images.ctfassets.net www.youtube.com witt-gruppe-res.cloudinary.com; manifest-src 'self' cdn.wcc.heine.de; worker-src 'self' cdn.wcc.heine.de blob:; form-action 'self' www.facebook.com; block-all-mixed-content; frame-ancestors 'self'; sandbox allow-scripts allow-forms allow-same-origin allow-top-navigation allow-popups allow-popups-to-escape-sandbox allow-modals;
x-dns-prefetch-control: off
x-frame-options: SAMEORIGIN
strict-transport-security: max-age=15724800; includeSubDomains
x-download-options: noopen
x-xss-protection: 0
x-content-type-options: nosniff
referrer-policy: strict-origin-when-cross-origin
x-permitted-cross-domain-policies: none
permissions-policy: camera=(), microphone=(), geolocation=()
etag: "28996-Tb5dKORQZayI6xP7nMyxZOFRhpc"
cache-control: private, no-cache, no-store, max-age=0, must-revalidate
server-timing: total; dur=197.78990299999998; desc="Total Response Time"
|