Expect-CT: | max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct" |
X-Drupal-Cache: | MISS |
Transfer-Encoding: | chunked |
Last-Modified: | Thu, 02 Aug 2018 13:27:43 GMT |
X-Cache-Hits: | 626 |
X-Frame-Options: | Allow-From: cdnjs.cloudflare.com |
X-Request-ID: | v-d63839ee-9657-11e8-b99f-0a62ca5c1f61 |
X-Content-Security-Policy-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
Content-Language: | fr |
Expires: | Sun, 19 Nov 1978 05:00:00 GMT |
X-WebKit-CSP-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
Link: | ; rel="canonical",; rel="shortlink" |
Date: | Thu, 02 Aug 2018 15:48:54 GMT |
CF-RAY: | 4441b0ffea1a91dc-EWR |
X-AH-Environment: | 01live |
X-Varnish: | 2627281 2346686 |
X-Cache: | HIT |
Set-Cookie: | __cfduid=db8ed5e543056821989c9d59810dd2c0d1533224934; expires=Fri, 02-Aug-19 15:48:54 GMT; path=/; domain=.nesquikstudios.fr; HttpOnly |
Age: | 8469 |
Server: | cloudflare |
Content-Security-Policy-Report-Only: | default-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.amazonaws.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.fusepump.com *.nr-data.net *.googleapis.com *.google-analytics.com *.clic2buy.com *.pump.to *.betrad.com *.evidon.com *.googletagmanager.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; object-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline' *.newrelic.com *.jquery.com *.cloudflare.com *.jsdelivr.net *.bootstrapcdn.com *.gigya.com *.googleapis.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.co *.amazonaws.com; img-src 'self' 'unsafe-inline' blob: data: *.gigya.com *.jsdelivr.net *.gstatic.com *.fusepump.com *.clic2buy.com *.google-analytics.com *.pump.to *.betrad.com *.evidon.com https://nestle.gigya.com https://cdns.eu1.gigya.com *.amazonaws.com; media-src 'self' 'unsafe-inline'; frame-src 'self' 'unsafe-inline' *.youtube.com *.gigya.com *.betrad.com *.evidon.com https://cdns.gigya.com https://nestle.gigya.com https://cdns.eu1.gigya.com; font-src 'self' 'unsafe-inline' *.bootstrapcdn.com *.jsdelivr.net *.googleapis.com *.gstatic.com *.betrad.com *.evidon.com; connect-src 'self' 'unsafe-inline' *.fusepump.com *.clic2buy.com *.amazonaws.com; report-uri /admin/config/system/seckit/csp-report |
Connection: | keep-alive |
P3P: | CP="CURa ADMa OUR UNI INT STA PRE COM NAV NOI COR ONL" |
Via: | 1.1 varnish-v4 |
X-Content-Type-Options: | nosniff |
Content-Encoding: | gzip |
Vary: | Cookie,Accept-Encoding |
Cache-Control: | public, max-age=18000 |
Content-Type: | text/html; charset=utf-8 |