HTTP/1.1 301 Moved Permanently
Date: Sun, 24 Oct 2021 16:58:01 GMT
Content-Type: text/html
Connection: keep-alive
location: https://purcommunity.com:443/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=vb6HfBzzd0CE1vfqf0hlRJutNiw3rWAhOP0MwM5nWN6Wtlnl1SwS%2FJWnJBDgi0wvRXdxAK71JLFyR3Z1v23k6zDKehYMtF0iE71FujokjAiGuXJUgRBLo4I04Xhy9uqwCn%2F4"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 6a34bf5c2aa862d0-ORD
alt-svc: h3=":443"; ma=86400, h3-29=":443"; ma=86400, h3-28=":443"; ma=86400, h3-27=":443"; ma=86400
HTTP/2 302
date: Sun, 24 Oct 2021 16:58:01 GMT
content-type: text/html; charset=UTF-8
location: https://www.purcommunity.com/community/
set-cookie: PHPSESSID=hqdh2ragp177bhe8cp8vkeobbr; expires=Sun, 24-Oct-2021 17:58:01 GMT; Max-Age=3600; path=/; domain=purcommunity.com; secure; HttpOnly
content-security-policy: font-src *.cloudflare.com *.twitter.com *.gstatic.com *.typekit.net *.googleapis.com *.fontawesome.com *.bootstrapcdn.com unsafe-inline *.trustarc.com 'self' data: https://script.hotjar.com/ https://qaapp02.xisecurenet.com/ *.helenoftroy.custhelp.com helenoftroy.custhelp.com https://helenoftroy.custhelp.com https://helenoftroy.custhelp.com/ *.sdiapi.com 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.twitter.com unsafe-inline *.trustarc.com https://stinger-dev.heledigital.com/ https://home-health.heledigital.com/ *.facebook.com *.sdiapi.com 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com *.twitter.com *.google.com *.addthis.com *.paymetric.com *.hotjar.com *.doubleclick.net *.adsrvr.org *.cloudfront.net *.cloudflareinsights.com *.sdiapi.com unsafe-inline *.oraclecloud.com https://data-a495851.data.us2.oraclecloud.com/ https://www.youtube.com/ http://youtube.com/ https://qaapp02.xisecurenet.com/ https://www.gstatic.com/ https://vars.hotjar.com/ https://consent-st.trustarc.com/ *.custhelp.com *.trustarc.com https://insight.adsrvr.org/ *.facebook.com *.pur.com *.helenoftroy.custhelp.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.cloudflare.com *.googleadservices.com *.google-analytics.com *.paypal.com *.twitter.com *.google.com t.co *.custhelp.com *.rnengage.com *.facebook.com data: *.omtrdc.net unsafe-inline *.magentocommerce.com *.oraclecloud.com 'self' data: *.paypalobjects.com *.heledigital.com *.mailchimp.com *.doubleclick.net *.google.co.in *.cdninstagram.com https://consent.trustarc.com/ *.trustarc.com https://consent-pref.trustarc.com/ https://a5.behance.net/ https://amasty.com/ *.honeywellpluggedin.com/ https://consent.truste.com/ *.co *.apple.com *.googletagmanager.com *.pur.com https://crrecommendedmark.org *.ytimg.com *.sdiapi.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com secure.authorize.net test.authorize.net geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com js.authorize.net jstest.authorize.net www.googleadservices.com www.google-analytics.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com js.braintreegateway.com s.ytimg.com video.google.com vimeo.com www.vimeo.com cdn-scripts.signifyd.com www.youtube.com *.cloudflare.com *.twitter.com *.ads-twitter.com *.google-analytics.com googletagmanager.com *.google.com https://www.gstatic.com/ *.trustedshops.com *.fontawesome.com *.addthis.com s7.addthis.com m.addthis.com z.moatads.com *.addthisedge.com apis.google.com graph.facebook.com *.facebook.net widgets.pinterest.com *.hotjar.com *.doubleclick.net *.custhelp.com *.rnengage.com *.googleadservices.com *.googleads.g.doubleclick.net/ https://www.googleapis.com *.oraclecloud.com *.amazonaws.com *.googletagmanager.com *.mouseflow.com https://ajax.cloudflare.com/ consent.trustarc.com https://js-agent.newrelic.com/ https://bam.nr-data.net/ https://www.youtube.com/ http://youtube.com/ *.pur.com *.atgsvcs.com https://static.ads-twitter.com/ *.facebook.net/ *.doubleclick.net/ https://s.yimg.com/ *.rapidspike.com *.yahoo.com *.cardinalcommerce.com unsafe-inline *.google.co.in *.paymetric.com *.rightnowtech.com *.honeywellpluggedin.com *.magentocommerce.com *.helenoftroy.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.cloudflare.com *.googleapis.com *.twitter.com *.gstatic.com *.typekit.net *.fontawesome.com *.bootstrapcdn.com *.custhelp.com unsafe-inline *.trustarc.com *.mailchimp.com *.getfirebug.com *.heledigital.com *.helenoftroy.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src https://magento.com https://devdocs.magento.com *.sdiapi.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.cloudflare.com *.twitter.com *.paypal.com *.hotjar.com *.signifyd.com *.rapidspike.com *.oraclecloud.com unsafe-inline *.google-analytics.com consent.trustarc.com *.trustarc.com *.instagram.com https://vc.hotjar.io/ https://data-a495851.data.us2.oraclecloud.com/ https://bam.nr-data.net/ https://www.pur.com/community/ https://qaapp02.xisecurenet.com/ *.doubleclick.net *.yimg.com *.rapidspike.com *.atgsvcs.com *.facebook.com *.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
vary: Accept-Encoding
pragma: no-cache
expires: -1
cache-control: no-store, no-cache, must-revalidate, max-age=0
x-powered-by: Magic
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=haQWUDkc6C0HmDcPTBuB8ajvxZuC0VfC%2B2t22vlm8wafrjKWTUzSIpobSLjFUjUDnny1mHigGLWcrqPJvFrJ8rsZ%2BWGm6flrHBWcBuyq6%2BdyGAINyCivQtPdA2A3CGJK1dsL"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server: cloudflare
cf-ray: 6a34bf5d4db2293d-ORD
alt-svc: h3=":443"; ma=86400, h3-29=":443"; ma=86400, h3-28=":443"; ma=86400, h3-27=":443"; ma=86400
HTTP/2 200
date: Sun, 24 Oct 2021 16:58:01 GMT
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
content-security-policy-report-only: ; report-uri https://.report-uri.com/r/d/csp/reporting
content-security-policy: font-src *.cloudflare.com *.twitter.com *.gstatic.com *.typekit.net *.googleapis.com *.fontawesome.com *.bootstrapcdn.com unsafe-inline *.trustarc.com 'self' data: https://script.hotjar.com/ https://qaapp02.xisecurenet.com/ *.helenoftroy.custhelp.com helenoftroy.custhelp.com https://helenoftroy.custhelp.com https://helenoftroy.custhelp.com/ *.sdiapi.com 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.twitter.com unsafe-inline *.trustarc.com https://stinger-dev.heledigital.com/ https://home-health.heledigital.com/ *.facebook.com *.sdiapi.com 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src secure.authorize.net test.authorize.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com www.paypal.com www.sandbox.paypal.com *.twitter.com *.google.com *.addthis.com *.paymetric.com *.hotjar.com *.doubleclick.net *.adsrvr.org *.cloudfront.net *.cloudflareinsights.com *.sdiapi.com unsafe-inline *.oraclecloud.com https://data-a495851.data.us2.oraclecloud.com/ https://www.youtube.com/ http://youtube.com/ https://qaapp02.xisecurenet.com/ https://www.gstatic.com/ https://vars.hotjar.com/ https://consent-st.trustarc.com/ *.custhelp.com *.trustarc.com https://insight.adsrvr.org/ *.facebook.com *.pur.com *.helenoftroy.custhelp.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com *.cloudflare.com *.googleadservices.com *.google-analytics.com *.paypal.com *.twitter.com *.google.com t.co *.custhelp.com *.rnengage.com *.facebook.com data: *.omtrdc.net unsafe-inline *.magentocommerce.com *.oraclecloud.com 'self' data: *.paypalobjects.com *.heledigital.com *.mailchimp.com *.doubleclick.net *.google.co.in *.cdninstagram.com https://consent.trustarc.com/ *.trustarc.com https://consent-pref.trustarc.com/ https://a5.behance.net/ https://amasty.com/ *.honeywellpluggedin.com/ https://consent.truste.com/ *.co *.apple.com *.googletagmanager.com *.pur.com https://crrecommendedmark.org *.ytimg.com *.sdiapi.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com secure.authorize.net test.authorize.net geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com js.authorize.net jstest.authorize.net www.googleadservices.com www.google-analytics.com www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com js.braintreegateway.com s.ytimg.com video.google.com vimeo.com www.vimeo.com cdn-scripts.signifyd.com www.youtube.com *.cloudflare.com *.twitter.com *.ads-twitter.com *.google-analytics.com googletagmanager.com *.google.com https://www.gstatic.com/ *.trustedshops.com *.fontawesome.com *.addthis.com s7.addthis.com m.addthis.com z.moatads.com *.addthisedge.com apis.google.com graph.facebook.com *.facebook.net widgets.pinterest.com *.hotjar.com *.doubleclick.net *.custhelp.com *.rnengage.com *.googleadservices.com *.googleads.g.doubleclick.net/ https://www.googleapis.com *.oraclecloud.com *.amazonaws.com *.googletagmanager.com *.mouseflow.com https://ajax.cloudflare.com/ consent.trustarc.com https://js-agent.newrelic.com/ https://bam.nr-data.net/ https://www.youtube.com/ http://youtube.com/ *.pur.com *.atgsvcs.com https://static.ads-twitter.com/ *.facebook.net/ *.doubleclick.net/ https://s.yimg.com/ *.rapidspike.com *.yahoo.com *.cardinalcommerce.com unsafe-inline *.google.co.in *.paymetric.com *.rightnowtech.com *.honeywellpluggedin.com *.magentocommerce.com *.helenoftroy.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com *.cloudflare.com *.googleapis.com *.twitter.com *.gstatic.com *.typekit.net *.fontawesome.com *.bootstrapcdn.com *.custhelp.com unsafe-inline *.trustarc.com *.mailchimp.com *.getfirebug.com *.heledigital.com *.helenoftroy.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src https://magento.com https://devdocs.magento.com *.sdiapi.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.cloudflare.com *.twitter.com *.paypal.com *.hotjar.com *.signifyd.com *.rapidspike.com *.oraclecloud.com unsafe-inline *.google-analytics.com consent.trustarc.com *.trustarc.com *.instagram.com https://vc.hotjar.io/ https://data-a495851.data.us2.oraclecloud.com/ https://bam.nr-data.net/ https://www.pur.com/community/ https://qaapp02.xisecurenet.com/ *.doubleclick.net *.yimg.com *.rapidspike.com *.atgsvcs.com *.facebook.com *.custhelp.com https://crrecommendedmark.org *.sdiapi.com 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
pragma: no-cache
expires: -1
cache-control: no-store, no-cache, must-revalidate, max-age=0
x-powered-by: Magic
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=DRo6JVby9VUkJXfXZkrsj6G%2FEGe8HA8HzRfy0VqHo47v7H9LhdeF9j1W9wMR5Y9dnjjVxVcHRaJXY%2BPqIeh6h2ezhOI2SkNnxE4TXIZftFAqHZ5C4KHvAxx03b9U9WzKk44zkwUEmQ%3D%3D"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server: cloudflare
cf-ray: 6a34bf601c292980-ORD
alt-svc: h3=":443"; ma=86400, h3-29=":443"; ma=86400, h3-28=":443"; ma=86400, h3-27=":443"; ma=86400
|