| Expect-CT: | max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct" |
| X-Drupal-Cache: | MISS |
| Transfer-Encoding: | chunked |
| Last-Modified: | Thu, 02 Aug 2018 13:27:43 GMT |
| X-Cache-Hits: | 626 |
| X-Frame-Options: | Allow-From: cdnjs.cloudflare.com |
| X-Request-ID: | v-d63839ee-9657-11e8-b99f-0a62ca5c1f61 |
| X-Content-Security-Policy-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
| Content-Language: | fr |
| Expires: | Sun, 19 Nov 1978 05:00:00 GMT |
| X-WebKit-CSP-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
| Link: | ; rel="canonical",; rel="shortlink" |
| Date: | Thu, 02 Aug 2018 15:48:54 GMT |
| CF-RAY: | 4441b0ffea1a91dc-EWR |
| X-AH-Environment: | 01live |
| X-Varnish: | 2627281 2346686 |
| X-Cache: | HIT |
| Set-Cookie: | __cfduid=db8ed5e543056821989c9d59810dd2c0d1533224934; expires=Fri, 02-Aug-19 15:48:54 GMT; path=/; domain=.nesquikstudios.fr; HttpOnly |
| Age: | 8469 |
| Server: | cloudflare |
| Content-Security-Policy-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
| Connection: | keep-alive |
| P3P: | CP="CURa ADMa OUR UNI INT STA PRE COM NAV NOI COR ONL" |
| Via: | 1.1 varnish-v4 |
| X-Content-Type-Options: | nosniff |
| Content-Encoding: | gzip |
| Vary: | Cookie,Accept-Encoding |
| Cache-Control: | public, max-age=18000 |
| Content-Type: | text/html; charset=utf-8 |