HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Tue, 08 Feb 2022 12:14:56 GMT
Content-Type: text/html
Content-Length: 162
Connection: keep-alive
Location: https://fincasmaya.es/
HTTP/2 200
server: nginx
date: Tue, 08 Feb 2022 12:14:56 GMT
content-type: text/html; charset=UTF-8
expires: Thu, 19 Nov 1981 08:52:00 GMT
cache-control: no-store, no-cache, must-revalidate
pragma: no-cache
x-content-type-options: nosniff
strict-transport-security: max-age=31536000; includeSubDomains
set-cookie: SessionID=05rf02oevmi18nn6k3qmc75fbk; path=/; Secure; HttpOnly
permissions-policy: interest-cohort=(), accelerometer=(self), autoplay=(self), camera=(self), document-domain=(self "https://www.facebook.com"), encrypted-media=(self "https://www.facebook.com"), fullscreen=(self "https://www.youtube.com" "https://clicktours.es" "https://floorfy.com" "https://my.matterport.com"), geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), picture-in-picture=(self), sync-xhr=(self), usb=(self)
vary: User-Agent
accept-ranges: none
x-ua-compatible: IE=edge
x-frame-options: SAMEORIGIN
content-security-policy: default-src 'self'; base-uri 'self'; form-action 'self' https://www.facebook.com; script-src 'self' 'unsafe-inline' data: blob: bat.bing.com *.tidio.co *.tidiochat.com api.instagram.com *.pisos.com code.jquery.com *.facebook.com *.fbcdn.net *.facebook.net *.google-analytics.com https://www.google-analytics.com https://ssl.google-analytics.com https://tagmanager.google.com https://www.googletagmanager.com https://www.googleadservices.com https://googleads.g.doubleclick.net *.google.com *.gstatic.com *.googleapis.com *.youtube.com *.youtube-nocookie.com *.ytimg.com *.googlevideo.com fbstatic-a.akamaihd.net fbcdn-static-b-a.akamaihd.net *.googletagmanager.com 'unsafe-eval'; style-src 'self' 'unsafe-inline' data: code.jquery.com *.facebook.com *.fbcdn.net *.facebook.net *.google-analytics.com *.google.com *.gstatic.com *.googleapis.com *.youtube.com *.youtube-nocookie.com *.ytimg.com *.googlevideo.com fbstatic-a.akamaihd.net fbcdn-static-b-a.akamaihd.net https://tagmanager.google.com; font-src 'self' data: fonts.googleapis.com fonts.gstatic.com; frame-src 'self' clicktours.es *.clicktours.es https://www.instagram.com/ https://my.matterport.com/ https://storage.net-fs.com/ accounts.google.com *.facebook.com oi2web.com roundme.com floorfy.com goo.gl player.vimeo.com *.youtube.com *.youtube-nocookie.com *.google.com https://bid.g.doubleclick.net; child-src 'self' *.facebook.com oi2web.com goo.gl player.vimeo.com *.youtube.com *.youtube-nocookie.com *.google.com; worker-src 'self' *.facebook.com oi2web.com goo.gl player.vimeo.com *.youtube.com *.youtube-nocookie.com *.google.com; connect-src 'self' wss://socket.tidio.co translate.googleapis.com https://instagram.com https://www.instagram.com https://www.google-analytics.com https://stats.g.doubleclick.net; img-src * data: blob: https://www.google-analytics.com https://ssl.gstatic.com https://www.gstatic.com https://www.googletagmanager.com https://googleads.g.doubleclick.net https://www.google.com https://secure.adnxs.com; media-src *; object-src 'self'; frame-ancestors 'self' http://www.clickviviendas.com https://www.clickviviendas.com http://clickviviendas.com https://clickviviendas.com; upgrade-insecure-requests
x-xss-protection: 1; mode=block
referrer-policy: strict-origin-when-cross-origin
cache-control: max-age=3600, private, must-revalidate
x-powered-by: PleskLin
|