页面mybag.com检测结果
X-Content-Type-Options: nosniff
Pragma: no-cache
Date: Sun, 02 Jun 2024 10:53:07 GMT
X-Frame-Options: SAMEORIGIN
Referrer-Policy: unsafe-url
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate
Report-To: {"group":"report-endpoint","max_age":86400,"endpoints":[{"url":"https://csp.thehut.net/cspReport.txt","priority":1,"weight":1}],"include_subdomains":true}
Content-Security-Policy: child-src 'self' https://www.googletagmanager.com https://*.liveperson.net https://cdn.appdynamics.com https://*.lpsnmedia.net https://www.facebook.com https://connect.facebook.net https://*.google.com https://widget.trustpilot.com https://*.doubleclick.net https://player.vimeo.com https://www.**.com https://www.zenaps.com https://ln-rules.rewardstyle.com https://*.akamaihd.net https://*.translate.naver.net https://*.recaptcha.net https://tr.snapchat.com https://www.shoplooks.com https://www.pinterest.com https://dekopay.preprod.k8s.dekopay.org https://pay.deko.finance https://gum.criteo.com blob: https://tr6.snapchat.com; connect-src 'self' https://*.thcdn.com https://*.ingest.sentry.io https://*.pingdom.net https://*.doubleclick.net https://*.google-analytics.com https://capture.trackjs.com https://fp.zenaps.com https://www.facebook.com https://*.google.com https://*.thehut.net https://privacyportal-eu.onetrust.com https://geolocation.onetrust.com https://cdn.cookielaw.org wss://*.liveperson.net https://*.googleapis.com https://services.postcodeanywhere.co.uk https://*.akamaihd.net https://*.sciencebehindecommerce.com https://*.trustpilot.com https://*.doubleclick.net https://*.bing.com https://connect.facebook.net https://*.baidu.com https://*.parcellab.com https://www.shoplooks.com https://ct.pinterest.com https://tr.snapchat.com https://*.contentsquare.net https://*.criteo.com https://analytics.tiktok.com; font-src 'self' data: https://*.thcdn.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://fonts.gstatic.com https://fonts.googleapis.com; form-action 'self' https://www.facebook.com https://m.mybag.com https://checkout.mybag.com https://www.mybag.com https://connect.facebook.net https://tr.snapchat.com; img-src 'self' data: https://*.thcdn.com https://col.eum-appdynamics.com https://usage.trackjs.com https://*.lpsnmedia.net https://*.doubleclick.net https://www.google-analytics.com https://*.google.com https://cx.atdmt.com https://www.zenaps.com https:; media-src 'self' https://*.thcdn.com https://*.lpsnmedia.net; object-src 'self' https://*.thcdn.com https://www.**.com; report-uri https://csp.thehut.net/cspReport.txt; script-src 'self' 'unsafe-eval' 'unsafe-inline' data: https://*.thcdn.com https://*.thehut.net https://rum-static.pingdom.net https://*.liveperson.net https://*.lpsnmedia.net https://*.doubleclick.net https://static.cdn-apple.com https://*.liveperson.com https://geolocation.onetrust.com https://cdn.cookielaw.org https://cdn.parcellab.com https://www.googletagmanager.com https://cdnjs.cloudflare.com https://fp.zenaps.com https://www.**.com https://www.google-analytics.com https://*.google.com https://connect.facebook.net https://bat.bing.com https://widget.trustpilot.com https://s.ytimg.com https://www.googletagservices.com https://*.googleapis.com https://www.facebook.com https://www.googleadservices.com https://*.gstatic.com https://*.gstatic.cn https://www.dwin1.com https://cdn.trackjs.com https://remote.captcha.com https://seal.digicert.com https://ssl.bing.com https://ln-rules.rewardstyle.com https://*.baidu.com https://*.recaptcha.net https://*.akamaihd.net https://*.sciencebehindecommerce.com https://static.shoplooks.com https://slooks.top https://slooks.me https://*.microsofttranslator.com https://google.com https://*.trustpilot.com https://*.translate.naver.net https://*.doubleclick.net https://*.google-analytics.com https://sc-static.net https://*.google.co.uk https://google.co.uk https://s.pinimg.com https://*.contentsquare.net https://app.contentsquare.com https://static.criteo.net https://*.criteo.com https://assets.dekopay.com https://analytics.tiktok.com https://*.ibytedtos.com https://tr.snapchat.com; style-src 'self' 'unsafe-inline' https://*.thcdn.com https://*.google.com https://*.googleapis.com https://fp.zenaps.com https://cdnjs.cloudflare.com https://www.googletagmanager.com https://www.shoplooks.com https://static.shoplooks.com https://*.googleapis.com https://*.translate.naver.net https://*.microsofttranslator.com https://cdn.parcellab.com; upgrade-insecure-requests; report-to report-endpoint
X-Xss-Protection: 1; mode=block; report=/xssProtection.txt
Set-Cookie: JSESSIONID=A2CB3FB5F74049FBD2B4BC17E6CA3CB3; Path=/; Secure; HttpOnly; SameSite=Lax,chumewe_user=f9b63c06-4ed9-4381-8295-98fed071f965; Version=1; Domain=.mybag.com; Path=/; Max-Age=157784630; Expires=Sat, 02-Jun-2029 15:56:57 GMT; SameSite=None; Secure,chumewe_sess=3db472d5-20ba-42b1-981f-b5bc77fbc3ba; Version=1; Domain=.mybag.com; Path=/; Max-Age=14400; Expires=Sun, 02-Jun-2024 14:53:07 GMT; SameSite=None; Secure,locale_V6=en_GB; Version=1; Domain=.mybag.com; Path=/; Max-Age=31556926; Expires=Mon, 02-Jun-2025 16:41:53 GMT; SameSite=None; Secure
Expires: Thu, 01 Jan 1970 00:00:00 GMT
Content-Length: 0
Location: https://www.mybag.com/