HTTP/1.1 301 Moved Permanently
Date: Mon, 25 Oct 2021 22:03:44 GMT
Server: Apache
Location: https://www.kittelberger.de/
Content-Type: text/html; charset=iso-8859-1
HTTP/1.1 200 OK
Date: Mon, 25 Oct 2021 22:03:45 GMT
Server: Apache
Set-Cookie: PHPSESSID=vdr6lp61lud5p8bs8u24049u06; path=/; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: max-age=0, must-revalidate, no-transform, no-cache
Pragma: no-cache
X-DynamicCache: hit at Tue, 26 Oct 2021 00:03:45 +0200
Vary: Accept-Encoding,User-Agent
X-Frame-Options: SAMEORIGIN
Access-Control-Allow-Headers: content-type
Access-Control-Allow-Methods: GET, POST, OPTIONS
Content-Security-Policy: default-src 'self' https: https://jobs.b-ite.com https://www.google-analytics.com; connect-src 'self' https://jobs.b-ite.com https://stats.g.doubleclick.net https://api.cookiefirst.com https://www.kittelberger.de https://matomo.kittelberger.net https://snap.licdn.com https://www.googletagmanager.com https://connect.facebook.net https://stats.g.doubleclick.net https://www.google-analytics.com https://edge.cookiefirst.com https://www.userlike.com https://userlike-cdn-widgets.s3-eu-west-1.amazonaws.com wss://umd.userlike.com https://static.cookiefirst.com; media-src 'self' https://d3dc1lgancj6l0.cloudfront.net; font-src 'self' https://d3dc1lgancj6l0.cloudfront.net https://fonts.gstatic.com data:; object-src data: 'self'; img-src https: data: blob:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://consent.cookiefirst.com; script-src https: 'unsafe-inline' 'unsafe-eval' https://ssl.google-analytics.com https://www.google-analytics.com snap.licdn.com; frame-src 'self' https:; frame-ancestors 'self' https:
X-Content-Security-Policy: default-src 'self' https:; media-src 'self'; font-src 'self' https://d3dc1lgancj6l0.cloudfront.net https://fonts.gstatic.com; object-src data: 'self'; img-src https: data: blob:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://consent.cookiefirst.com; script-src https: 'unsafe-inline' 'unsafe-eval' https://ssl.google-analytics.com https://www.google-analytics.com; frame-src 'self' https:; frame-ancestors 'self' https:
X-Webkit-CSP: default-src 'self' https:; media-src 'self'; font-src 'self' https://d3dc1lgancj6l0.cloudfront.net https://fonts.gstatic.com; object-src data: 'self'; img-src https: data: blob:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://consent.cookiefirst.com; script-src https: 'unsafe-inline' 'unsafe-eval' https://ssl.google-analytics.com https://www.google-analytics.com; frame-src 'self' https:; frame-ancestors 'self' https:
Feature-Policy: geolocation 'none'; midi 'none'; notifications 'none'; push 'none'; sync-xhr 'none'; microphone 'none'; camera 'none'; magnetometer 'none'; gyroscope 'none'; speaker 'none'; vibrate 'none'; payment 'none'
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Xss-Protection: 1; mode=block
Referrer-Policy: strict-origin-when-cross-origin
X-Content-Type-Options: nosniff
Content-Type: text/html
|