HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Sat, 30 Jul 2022 08:49:50 GMT
Content-Type: text/html
Content-Length: 178
Connection: keep-alive
Location: https://darknight-coffee.de/
HTTP/2 302
server: nginx
date: Sat, 30 Jul 2022 08:49:51 GMT
content-type: text/html
location: https://darknight-coffee.de/Pixelfeed
x-sso-wat: You've just been SSOed
content-security-policy: upgrade-insecure-requests
content-security-policy-report-only: default-src https: data: blob: ; object-src https: data: 'unsafe-inline'; style-src https: data: 'unsafe-inline' ; script-src https: data: 'unsafe-inline' 'unsafe-eval'
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-download-options: noopen
x-permitted-cross-domain-policies: none
x-frame-options: SAMEORIGIN
permissions-policy: interest-cohort=()
strict-transport-security: max-age=63072000; includeSubDomains; preload
HTTP/2 404
server: nginx
content-type: text/html; charset=UTF-8
x-sso-wat: You've just been SSOed
cache-control: no-cache, private
date: Sat, 30 Jul 2022 08:49:51 GMT
x-frame-options: SAMEORIGIN
set-cookie: XSRF-TOKEN=eyJpdiI6IlZoMWlralJGSG9JWlhEUFVTNGFZRHc9PSIsInZhbHVlIjoicjFONEsxREErdmtmMmQrSFczYm50dGN3Q3gxVWVkOHhQTFR6ckZZWC9MdmtVTkNEUmRzODYweEF2aFFWV0JXcHBjSndCQ1hWYTFNdmlDbVVhejY4QTYwSlJHNkFqb3JZb3IwdGR3UzNMNzFqbnA3SzNFZ2V0NnJtWHQ5Q1BlbWoiLCJtYWMiOiJjYmVmMzFjMzY1NGYzYmRiMDRhYjU5ZjE5MzFkZWFjYzI0YzJkOTYzZDU0OTY1ZjVkNTNhM2YwNGI2MWI0MjE5IiwidGFnIjoiIn0%3D; expires=Wed, 28-Sep-2022 08:49:51 GMT; Max-Age=5184000; path=/; domain=darknight-coffee.de; secure
set-cookie: pxfs=eyJpdiI6Img2bFlxaEpacVpyM0JHUW84dkdkVnc9PSIsInZhbHVlIjoic0puVG1qbTJuRkxRUlFQbDhseDF6dVB3VEpFekZZUjFYb3d0U3lNNVFxUCtYcWJaN0R1em10V1BBbmZjd2dqT3piRUE2cGlTMmYrbzhiYkFBcDM1QzNMeTZDdHNWdEJYL2VKMFJJYitnWUhiN2UrYmVEWkZIdks4YmZJT0RkZkIiLCJtYWMiOiJhOWQ2MjNkNmE0YTE1MTA4ZDU4MzkzMmFiMzJiYTk2YjQ5ZjNkYjIwNjZjMDcyMzU3NGVjMTA3ZTllNDU1NTE2IiwidGFnIjoiIn0%3D; expires=Wed, 28-Sep-2022 08:49:51 GMT; Max-Age=5184000; path=/; domain=darknight-coffee.de; secure; httponly
content-security-policy: upgrade-insecure-requests
content-security-policy-report-only: default-src https: data: blob: ; object-src https: data: 'unsafe-inline'; style-src https: data: 'unsafe-inline' ; script-src https: data: 'unsafe-inline' 'unsafe-eval'
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-download-options: noopen
x-permitted-cross-domain-policies: none
permissions-policy: interest-cohort=()
strict-transport-security: max-age=63072000; includeSubDomains; preload
|