HTTP/1.1 301 Moved Permanently
Content-Length: 152
Content-Type: text/html; charset=UTF-8
Location: https://www.sallyexpress.com/
Server: Microsoft-IIS/7.5
X-Powered-By: ASP.NET
Date: Wed, 20 Apr 2022 08:35:51 GMT
HTTP/2 301
date: Wed, 20 Apr 2022 08:35:52 GMT
content-length: 0
location: https://www.sallybeauty.co.uk/
accept-ranges: bytes
x-dwsid-samesite: None
cache-control: no-cache, no-store, must-revalidate
pragma: no-cache
expires: Thu, 01 Dec 1994 16:00:00 GMT
set-cookie: dwsid=dhjq5X-HSylKMc1HoCqo-diR9yjMzBwZwBYmU8wQntynoWKLtdgDc4i7v9SOvEoSY2ymiIXavLRpWSQ2us4yzw==; path=/; HttpOnly; Secure; SameSite=None
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
strict-transport-security: max-age=2592000; includeSubDomains; preload
server: cloudflare
cf-ray: 6fec8c89ea599db6-DME
HTTP/2 200
date: Wed, 20 Apr 2022 08:35:53 GMT
content-type: text/html;charset=UTF-8
set-cookie: dwac_b3bcb12c80b0372c5fa96f1a58=ruHx3RlVZ4_4fO3RBVOC2Jn6Xacd42n6p1g%3D|dw-only|||GBP|false|Europe%2FLondon|true; Path=/; Secure; SameSite=None
set-cookie: cqcid=achdH7dwG3z1Q7VqlQfaPhxalK; Path=/; Secure; SameSite=None
set-cookie: cquid=||; Path=/; Secure; SameSite=None
set-cookie: sid=ruHx3RlVZ4_4fO3RBVOC2Jn6Xacd42n6p1g; Path=/; Secure; SameSite=None
set-cookie: dwanonymous_63a37f74b0b171dcfc8aa8d456ae94c2=achdH7dwG3z1Q7VqlQfaPhxalK; Version=1; Comment="Demandware anonymous cookie for site Sites-sally-beauty-Site"; Max-Age=15552000; Expires=Mon, 17-Oct-2022 08:35:52 GMT; Path=/; Secure; SameSite=None
set-cookie: _pxhd=Mn5RbzpLL3sXVRe/6p-AFwWgIul8xeBu6VJ56AyoCNSk4ydermm3UCP0kG9m4xCOU/s3FvFXo1ES31d4YXWQzQ==:laBUFqfyTvw47R-LMW2/VWplDAvznuGW2N4EBh-nz7uBJaPYGd8Cm1CgJDsTHFNHHxJcIu3KjA74uwcZ-TdjtCMSeNC95W67DsvBIoTWq2s=; Expires=Thu, 20-Apr-2023 14:25:04 GMT; Path=/; Secure; SameSite=None
set-cookie: __cq_dnt=0; Path=/; Secure; SameSite=None
set-cookie: dw_dnt=0; Path=/; Secure; SameSite=None
set-cookie: dwsid=-NvQruAn4KGarQkewQnIOc_AfNTkke7UxYkK5W2Y-hdV2EO1biOIHsxGyRoL-yEtpiWoRFabSEWg4IW8rZ-5PA==; path=/; HttpOnly; Secure; SameSite=None
access-control-allow-origin: www.sallybeauty.co.uk
x-content-type-options: nosniff
x-dw-request-base-id: ZsN9542QX2IBAAB_
x-frame-options: DENY
referrer-policy: strict-origin-when-cross-origin
content-security-policy: default-src 'self' www.google.com *.worldpay.com *.criteo.com *.qualaroo.com www.youtube.com *.issuu.com www.instagram.com *.addthis.com *.facebook.com *.twitter.com *.emarsys.net *.google.com *.onetrust.com *.criteo.net; script-src 'self' *.cquotient.com *.cloudflare.com unpkg.com *.zdassets.com *.bing.com www.google-analytics.com/analytics.js www.google-analytics.com/plugins/ua/ecommerce.js www.google-analytics.com/plugins/ua/ec.js maps.googleapis.com *.mondialrelay.com *.feefo.com *.worldpay.com *.px-cloud.net *.scarabresearch.com www.google.com www.gstatic.com *.criteo.net *.criteo.com *.crazyegg.com *.amazonaws.com *.facebook.net *.trustedshops.com *.qualaroo.com *.webgains.com *.webgains.io polyfill.io www.instagram.com *.salon-services.com *.addthis.com *.addthisedge.com *.moatads.com *.twitter.com *.webgains.com *.webgains.io *.emarsys.net *.sallyexpress.com *.onetrust.com *.google.com *.cdn-apple.com *.clarity.ms 'unsafe-inline' 'unsafe-eval' blob:; img-src 'self' *.salesforce.com www.paypalobjects.com *.demandware.net *.bing.com www.google.com www.google.com.ua www.google-analytics.com maps.gstatic.com maps.googleapis.com *.salon-services.com *.feefo.com *.cloudfront.net *.trustedshops.com *.mondialrelay.com *.tapad.com *.criteo.com *.smaato.net *.yieldmo.com *.rubiconproject.com *.advertising.com *.mgid.com *.liadm.com *.yahoo.com *.openx.net *.addthis.com *.doubleclick.net *.outbrain.com *.yieldlab.net *.bidswitch.net *.smartadserver.com *.3lift.com *.taboola.com *.360yield.com *.teads.tv *.pubmatic.com *.casalemedia.com *.mgid.com *.media.net *.omnitagjs.com *.adform.net *.twiago.com *.adnxs.com *.adscale.de *.socdm.com *.sharethrough.com *.stickyadstv.com *.rlcdn.com *.ivitrack.com *.e-planning.net *.smartclip.net *.ad-stir.com *.clmbtech.com *.tremorhub.com *.demdex.net *.postrelease.com *.facebook.com *.google.com *.openstreetmap.org *.aralego.com *.bluekai.com *.adsrvr.org *.ants.vn *.krxd.net *.mediavine.com *.microad.jp *.agkn.com *.emarsys.net *.crazyegg.com *.bluekai.com *.gstatic.com *.clarity.ms id5-sync.com *.dmxleo.com *.thebrighttag.com *.crwdcntrl.net data:; font-src 'self' *.googleapis.com *.gstatic.com *.cdn-apple.com data:; style-src 'self' 'unsafe-inline' *.googleapis.com unpkg.com *.mondialrelay.com *.worldpay.com; connect-src 'self' *.zendesk.com *.crazyegg.com *.zdassets.com *.google-analytics.com *.feefo.com *.doubleclick.net *.crazyegg.com *.mondialrelay.com *.scarabresearch.com *.emarsys.net *.px-cdn.net *.px-cloud.net *.edq.com *.bing.com *.webgains.com *.webgains.io *.onetrust.com *.clarity.ms *.googleapis.com; media-src 'self'
x-sf-cc-strict-transport-security: max-age=31536000
x-xss-protection: 1; mode=block
cache-control: no-cache, no-store, must-revalidate
pragma: no-cache
expires: Thu, 01 Dec 1994 16:00:00 GMT
vary: accept-encoding
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
strict-transport-security: max-age=2592000; includeSubDomains; preload
server: cloudflare
cf-ray: 6fec8c8cc8429da8-DME
|