HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Thu, 27 Jan 2022 11:34:29 GMT
Content-Type: text/html; charset=iso-8859-1
Connection: keep-alive
Location: https://rolandas-photography.de/
HTTP/2 200
server: nginx
date: Thu, 27 Jan 2022 11:34:29 GMT
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
cache-control: max-age=0
expires: Thu, 27 Jan 2022 11:34:29 GMT
content-security-policy: img-src 'self' https://rolandas-photography.de/ https://ssl.gstatic.com https://www.gstatic.com https://cdn.profis.check24.de/widget/top_2021.svg data: ; font-src 'self' https://fonts.gstatic.com ; frame-src 'self' https://consentcdn.cookiebot.com/; connect-src https://rolandas-photography.de/ https://www.google-analytics.com https://consentcdn.cookiebot.com; media-src https://rolandas-photography.de/; worker-src 'self'; report-uri /security-report.php; form-action 'self'; frame-ancestors 'none'; child-src 'self'; base-uri 'self'; script-src 'unsafe-inline' 'nonce-c2474e8c7afd' 'nonce-b1b2b3b4b500' 'nonce-a8b8f8g18181' 'nonce-c5b5a5d5e5f5' 'sha256-t5Qdn0n1IBaoWFjpdnVw6oWoMwBFvET2aM0F8n8dzCM=' 'sha256-vbIn2JSmeuJ6vFXpSwbL24SJCF6wPgiFtc9lntcVGaA=' 'sha256-yEhx3Fj070zOmw23NMmwSsVF+axrnAqq8iEkTV1Dz20=' 'report-sample' https://consent.cookiebot.com/ https://consentcdn.cookiebot.com/ https://rolandas-photography.de/ https://www.google-analytics.com/ https://www.googletagmanager.com/ https://www.google-analytics.com/analytics.js ; upgrade-insecure-requests; object-src 'none'; style-src 'self' 'unsafe-inline' 'report-sample' https://rolandas-photography.de/ ; manifest-src https://rolandas-photography.de/matomo/plugins/CoreHome/javascripts/manifest.json; prefetch-src 'self'; default-src 'self';
access-control-expose-headers: Content-Security-Policy
strict-transport-security: max-age=31536000; includeSubDomains
x-content-type-options: nosniff
referrer-policy: same-origin
permissions-policy: accelerometer=(), autoplay=(self), camera=(), encrypted-media=(), fullscreen=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(self), usb=()
x-xss-protection: 1; mode=block
x-permitted-cross-domain-policies: master-only;
cross-origin-embedder-policy: require-cors
cross-origin-opener-policy: (same-origin)
cross-origin-resource-policy: (require-corp)
expect-ct: max-age=21600, enforce
x-frame-options: SAMEORIGIN
x-content-security-policy: default-src 'self'; script-src 'self'
x-webkit-csp: default-src 'self'; script-src 'self'
|