HTTP/1.1 301 Moved Permanently
Server: nginx/1.17.3
Date: Wed, 20 Oct 2021 06:52:48 GMT
Content-Type: text/html
Content-Length: 169
Connection: keep-alive
Location: https://hotelcard.com/
HTTP/2 200
server: nginx/1.17.3
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
cache-control: no-cache, private
date: Wed, 20 Oct 2021 06:52:50 GMT
content-security-policy: default-src 'self' https://hotelcard.com/ https://*.hotelcard.com/ https://www.google-analytics.com/ https://stats.g.doubleclick.net/ https://bid.g.doubleclick.net/ https://api.trustyou.com/ https://s7.addthis.com/ https://hotelcard.ch/ https://*.hotelcard.ch/ https://www.lacmp.net/ https://www.awin1.com/ https://the.sciencebehindecommerce.com/ https://www.paypal.com/ https://player.vimeo.com/ https://www.youtube.com/ https://youtu.be/ https://api-public.addthis.com/ https://www.getback.ch/ https://cdn1.api.trustedshops.com/ https://shops-si.trustedshops.com/ https://trustbadge.api.etrusted.com/ https://api.trustbadge.etrusted.com/ https://api.trustedshops.com/ https://apps.elfsight.com/ https://api.instacloud.io/ https://m.youtube.com/ https://wchat.eu.freshchat.com/ https://500159408622426.eu.webpush.freshchat.com/ https://tagmanager.google.com/ https://unbounce.com/ https://landing.hotelcard.com/ https://ads.google.com/ https://www.hotjar.com/ https://www.linkedin.com/ https://www.facebook.com/ https://m.addthis.com/ https://vars.hotjar.com/ https://in.hotjar.com/ http://cdn1.api.trustedshops.com/ https://integrations.etrusted.com https://ws7.hotjar.com/ http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io wss://*.hotjar.com https://e-payment.postfinance.ch/ https://epayment.postfinance.ch/; font-src 'self' https://fonts.gstatic.com/ https://use.fontawesome.com/ https://fonts.gstatic.com/ https://widgets.trustedshops.com/ http://script.hotjar.com https://script.hotjar.com http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io; img-src 'self' data: https: https://hotelcard-files.ams3.cdn.digitaloceanspaces.com/ https://hotelcard-files.ams3.digitaloceanspaces.com/ https://maps.gstatic.com/ https://hotelcard-stage-files.fra1.digitaloceanspaces.com/ https://www.facebook.com/ https://px.ads.linkedin.com/ https://www.google.com/ http://www.awin1.com/ http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io https://script.hotjar.com http://script.hotjar.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://use.fontawesome.com/ https://maps.googleapis.com/ https://www.googletagmanager.com/ https://s3.amazonaws.com/ http://s3.amazonaws.com/ https://www.google-analytics.com/ https://www.googleadservices.com/ http://www.googleadservices.com/ https://connect.facebook.net/ https://googleads.g.doubleclick.net/ https://cdnjs.cloudflare.com/ https://cdn.jsdelivr.net/ https://s7.addthis.com/ https://z.moatads.com/ https://v1.addthisedge.com/ https://m.addthis.com/ https://hotelcard.us12.list-manage.com/ https://www.lacmp.net/ http://www.lacmp.net/ https://www.dwin1.com/ https://code.jquery.com/ https://maxcdn.bootstrapcdn.com/ https://static.profity.ch/ https://www.getback.ch/ https://www.awin1.com/ https://the.sciencebehindecommerce.com/ https://www.google.com/ https://static.getback.ch/ https://apps.elfsight.com/ https://static.elfsight.com/ https://widgets.trustedshops.com/ https://wchat.eu.freshchat.com/ https://assetscdn-wchat.eu.freshchat.com/ https://snap.licdn.com/ http://static.hotjar.com https://static.hotjar.com/ https://script.hotjar.com/ http://widgets.trustedshops.com/ http://www.awin1.com/ https://ws7.hotjar.com/ https://integrations.etrusted.com http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com/ https://use.fontawesome.com/ https://cdnjs.cloudflare.com/ https://maxcdn.bootstrapcdn.com/ https://www.getback.ch/ https://static.getback.ch/ https://widgets.trustedshops.com/ https://wchat.eu.freshchat.com/ http://widgets.trustedshops.com/
permissions-policy: accelerometer=(self), autoplay=(self), camera=(self), cross-origin-isolated=(self), document-domain=*, encrypted-media=(self), fullscreen=(self), geolocation=(self), gyroscope=(self), magnetometer=(self), microphone=(self), midi=(self), payment=(self), picture-in-picture=*, publickey-credentials-get=(self), screen-wake-lock=(self), sync-xhr=*, usb=(self), xr-spatial-tracking=(self)
strict-transport-security: max-age=31536000; includeSubDomains; preload
x-download-options: noopen
x-permitted-cross-domain-policies: none
x-xss-protection: 1; mode=block
referrer-policy: no-referrer
set-cookie: XSRF-TOKEN=eyJpdiI6ImdTNWhKZTFxRkFzN1JwKzFYRDc4Tnc9PSIsInZhbHVlIjoiZ1JEaVhtTitMODJBTzRFK2UwR3B1UkhHY0x3MmRcL0xBWCtTMU1MK3RDMDJOaDgxZmRkbGlWeEJkeXZhSDE0ZG1SYmZ5eHJIYVI1cXZaWktyXC9LSUorV1lHXC9LKzZLRHlDblhsTkpQOEpKZjlITzBybm1hdHRvR0piM1c0YkJ4WmkiLCJtYWMiOiJjMjM1NGY4Njc5NGE1MTE5YTAxOTg2ZmI4ZWYxMzYwM2ZkNjcyYzdjYjFhZDFjZDdlMTgxMzQ5MzVlYmRhYjNjIn0%3D; expires=Thu, 21-Oct-2021 00:28:50 GMT; Max-Age=63360; path=/; samesite=lax
set-cookie: hotelcard_session=eyJpdiI6InJVakNNUlwvNmQzWGFRQWxGUVRnZVRBPT0iLCJ2YWx1ZSI6InN1aFhKWU9JT1dhZWliQjNrc3FOdHVOWUU1YzBvd0pxNTBNN2xiTkh4Mm9WTEJqNFFsTVNVczllQnNPOG40Nys0RTRzblZGNTF1RlwvbmlBZXpJdlFPNnlQUWI2NDJGMFVBdVh5OUpQZFpyRThpMzg1aExKUjBZVlwvclBOMis0cnEiLCJtYWMiOiJiYzBkMzMwYmJjNTczMzdkNjEwYmI2ZmE2Y2JmN2QzMjMzMDcyODZhZTQxNWI2YmQzYWVhMWYxZTAyZjdhODY4In0%3D; expires=Thu, 21-Oct-2021 00:28:50 GMT; Max-Age=63360; path=/; httponly; samesite=lax
set-cookie: locale=de; expires=Wed, 17-Nov-2021 06:52:48 GMT; Max-Age=2419198; path=/; httponly; samesite=lax
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block
x-content-type-options: nosniff
|