HTTP/1.1 301 Moved Permanently
content-length: 0
location: https://app.mooncard.co/
HTTP/1.1 302 Found
Cache-Control: no-cache
Content-Security-Policy: child-src 'self'; connect-src 'self' http://*.mooncard.co https://*.algolia.net https://*.algolianet.com https://*.bing.com https://*.facebook.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.googleapis.com https://*.hubapi.com https://*.hubspot.com https://*.ingest.sentry.io https://*.mooncard.co https://*.secure.force.com https://appvizer.one https://mooncard.force.com wss: wss://*.getbeamer.com wss://*.mooncard.co; default-src 'self'; font-src 'self' data: http://*.mooncard.co https://*.fontawesome.com https://*.gstatic.com https://*.mooncard.co wss://*.mooncard.co; frame-src 'self' 'unsafe-inline' https://*.facebook.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google.com https://*.googletagmanager.com https://*.hubspot.com https://*.livechatinc.com https://*.publicidees.com https://*.stripe.com https://*.yousign.com https://form.typeform.com https://service.force.com https://yousign.com wss://*.getbeamer.com; img-src 'self' blob: data: http://*.mooncard.co http://mooncard.co https://*.bing.com https://*.facebook.com https://*.facebook.net https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.google.fr https://*.googleapis.com https://*.googletagmanager.com https://*.gravatar.com https://*.gstatic.com https://*.hsforms.com https://*.hubspot.com https://*.mooncard.co https://*.s3.amazonaws.com https://*.stripe.com https://*.wp.com https://mooncard.co https://mooncard.s3.amazonaws.com https://mooncard.s3.eu-west-1.amazonaws.com wss://*.getbeamer.com wss://*.mooncard.co; manifest-src 'self' http://*.mooncard.co https://*.mooncard.co wss://*.mooncard.co; media-src 'self' https://*.livechatinc.com; object-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' http://*.mooncard.co https://*.algolianet.com https://*.bing.com https://*.facebook.net https://*.fontawesome.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.googleadservices.com https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gstatic.com https://*.hotjar.com https://*.hs-analytics.net https://*.hs-banner.com https://*.hs-scripts.com https://*.hsadspixel.net https://*.hscollectedforms.net https://*.licdn.com https://*.livechatinc.com https://*.mooncard.co https://*.pardot.com https://*.publicidees.com https://*.salesforceliveagent.com https://*.stripe.com https://*.yimg.com https://appvizer.one https://embed.typeform.com https://mooncard.force.com https://mooncard.my.salesforce.com https://polyfill.io https://service.force.com wss://*.getbeamer.com wss://*.mooncard.co; style-src 'self' 'unsafe-inline' http://*.mooncard.co https://*.fontawesome.com https://*.force.com https://*.getbeamer.com https://*.googleapis.com https://*.googletagmanager.com https://*.mooncard.co https://mooncard-heroku.s3.eu-west-3.amazonaws.com https://mooncard.force.com https://service.force.com wss://*.getbeamer.com wss://*.mooncard.co; worker-src 'self'; prefetch-src 'self'; report-uri https://reports-api.sqreen.io/browser/v0/csp-violations/csp_3ba3358a77954c758f0501d8bc095958
Content-Type: text/html; charset=utf-8
Location: https://app.mooncard.co/users/sign_in
Set-Cookie: 71b1b6eb5b31d041de9c6ce817be2d2dc1f265c12724018214c9cd7348d6f9be890cf537585c1efb48337849f1df739fbd0fe9efbee598c224a2dd8a168b80ba=2bb0311a6504f4575511c0dfc3627804; path=/; expires=Sat, 26 Feb 2022 11:03:18 GMT; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 spaces-router (279557a225d7)
X-Protected-By: Sqreen
X-Request-Id: 41c1547a-b3ae-550c-ff1d-27f56cad24ed
X-Runtime: 0.015403
X-Xss-Protection: 1
Date: Sat, 26 Feb 2022 09:03:18 GMT
HTTP/1.1 200 OK
Cache-Control: max-age=0, private, must-revalidate
Content-Security-Policy: child-src 'self'; connect-src 'self' http://*.mooncard.co https://*.algolia.net https://*.algolianet.com https://*.bing.com https://*.facebook.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.googleapis.com https://*.hubapi.com https://*.hubspot.com https://*.ingest.sentry.io https://*.mooncard.co https://*.secure.force.com https://appvizer.one https://mooncard.force.com wss: wss://*.getbeamer.com wss://*.mooncard.co; default-src 'self'; font-src 'self' data: http://*.mooncard.co https://*.fontawesome.com https://*.gstatic.com https://*.mooncard.co wss://*.mooncard.co; frame-src 'self' 'unsafe-inline' https://*.facebook.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google.com https://*.googletagmanager.com https://*.hubspot.com https://*.livechatinc.com https://*.publicidees.com https://*.stripe.com https://*.yousign.com https://form.typeform.com https://service.force.com https://yousign.com wss://*.getbeamer.com; img-src 'self' blob: data: http://*.mooncard.co http://mooncard.co https://*.bing.com https://*.facebook.com https://*.facebook.net https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.google.fr https://*.googleapis.com https://*.googletagmanager.com https://*.gravatar.com https://*.gstatic.com https://*.hsforms.com https://*.hubspot.com https://*.mooncard.co https://*.s3.amazonaws.com https://*.stripe.com https://*.wp.com https://mooncard.co https://mooncard.s3.amazonaws.com https://mooncard.s3.eu-west-1.amazonaws.com wss://*.getbeamer.com wss://*.mooncard.co; manifest-src 'self' http://*.mooncard.co https://*.mooncard.co wss://*.mooncard.co; media-src 'self' https://*.livechatinc.com; object-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' http://*.mooncard.co https://*.algolianet.com https://*.bing.com https://*.facebook.net https://*.fontawesome.com https://*.force.com https://*.g.doubleclick.net https://*.getbeamer.com https://*.google-analytics.com https://*.google.com https://*.googleadservices.com https://*.googleapis.com https://*.googlesyndication.com https://*.googletagmanager.com https://*.gstatic.com https://*.hotjar.com https://*.hs-analytics.net https://*.hs-banner.com https://*.hs-scripts.com https://*.hsadspixel.net https://*.hscollectedforms.net https://*.licdn.com https://*.livechatinc.com https://*.mooncard.co https://*.pardot.com https://*.publicidees.com https://*.salesforceliveagent.com https://*.stripe.com https://*.yimg.com https://appvizer.one https://embed.typeform.com https://mooncard.force.com https://mooncard.my.salesforce.com https://polyfill.io https://service.force.com wss://*.getbeamer.com wss://*.mooncard.co; style-src 'self' 'unsafe-inline' http://*.mooncard.co https://*.fontawesome.com https://*.force.com https://*.getbeamer.com https://*.googleapis.com https://*.googletagmanager.com https://*.mooncard.co https://mooncard-heroku.s3.eu-west-3.amazonaws.com https://mooncard.force.com https://service.force.com wss://*.getbeamer.com wss://*.mooncard.co; worker-src 'self'; prefetch-src 'self'; report-uri https://reports-api.sqreen.io/browser/v0/csp-violations/csp_3ba3358a77954c758f0501d8bc095958
Content-Type: text/html; charset=utf-8
Etag: W/"1f18b14625c194b20413be3df3d09f9b"
Link:
Referrer-Policy: strict-origin-when-cross-origin
Set-Cookie: ahoy_visitor=0729b874-5c5d-44de-8c8a-ed59fe21f3c4; domain=app.mooncard.co; path=/; expires=Mon, 26 Feb 2024 09:03:18 GMT; HttpOnly; SameSite=Strict; secure
Set-Cookie: ahoy_visit=93c2c416-fa4f-4be3-9588-93519f36b49e; domain=app.mooncard.co; path=/; expires=Sat, 26 Feb 2022 13:03:18 GMT; HttpOnly; SameSite=Strict; secure
Set-Cookie: 71b1b6eb5b31d041de9c6ce817be2d2dc1f265c12724018214c9cd7348d6f9be890cf537585c1efb48337849f1df739fbd0fe9efbee598c224a2dd8a168b80ba=3ab89f77e0961e1ee83d2ed2a2959358; path=/; expires=Sat, 26 Feb 2022 11:03:18 GMT; secure; HttpOnly; SameSite=Lax
Strict-Transport-Security: max-age=63072000; includeSubDomains
Vary: Accept,Accept-Encoding
Via: 1.1 spaces-router (279557a225d7)
X-Content-Type-Options: nosniff
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Protected-By: Sqreen
X-Request-Id: 34cc3aa2-adbf-7ba2-fd42-64da8eaa0e7d
X-Runtime: 0.040218
X-Xss-Protection: 1
Date: Sat, 26 Feb 2022 09:03:18 GMT
|