HTTP/1.1 301 Moved Permanently
Date: Thu, 17 Nov 2022 19:36:40 GMT
Server: Apache
X-Content-Type-Options: nosniff
X-XSS-Protection: 1;mode=block
Location: https://fitplus.cz/
Content-Length: 227
Content-Type: text/html; charset=iso-8859-1
HTTP/2 301
date: Thu, 17 Nov 2022 19:36:41 GMT
server: Apache
x-content-type-options: nosniff
x-xss-protection: 1;mode=block
location: https://www.fitplus.cz/
content-length: 231
content-type: text/html; charset=iso-8859-1
HTTP/2 200
date: Thu, 17 Nov 2022 19:36:41 GMT
server: Apache
x-powered-by: Weseus III
x-content-type-options: nosniff
x-ua-compatible: IE=edge
referrer-policy: strict-origin-when-cross-origin
x-frame-options: SAMEORIGIN
feature-policy: sync-xhr 'self'; fullscreen 'self'; geolocation 'self';
expires: Thu, 19 Nov 1981 08:52:00 GMT
cache-control: no-store, no-cache, must-revalidate
pragma: no-cache
content-security-policy: default-src 'none'; script-src 'nonce-sX2aiRqtvcPBWSBqiCL/iA==' 'strict-dynamic' 'unsafe-inline' https: https://cdn.onesignal.com/ https://onesignal.com/ https://*.smartlook.com/ https://*.smartlook.cloud/ http://static.hotjar.com/ https://static.hotjar.com/ https://script.hotjar.com/ https://*.smartsuppchat.com https://*.smartsuppcdn.com https://js-agent.newrelic.com https://bam.eu01.nr-data.net https://bam-cell.nr-data.net 'unsafe-eval' https://apicz-test.homecredit.cz/ https://apisk-test.homecredit.sk/ https://api.homecredit.cz/ https://api.homecredit.sk/ https://myloan.cz00t3.hccs.cz/ https://myloan.sk00t3.hccs.cz/ https://tagmanager.google.com/ http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io 'unsafe-inline' https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://cdn.luigisbox.com/ https://scripts.luigisbox.com/; script-src-elem 'nonce-sX2aiRqtvcPBWSBqiCL/iA==' 'strict-dynamic' 'unsafe-inline' https: https://cdn.onesignal.com/ https://www.googletagmanager.com/ https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ 'self' 'nonce-sX2aiRqtvcPBWSBqiCL/iA==' https://scripts.luigisbox.com/; style-src 'self' 'unsafe-inline' https://*.smartsuppcdn.com https://fonts.googleapis.com/ https://onesignal.com/ https://cdn.onesignal.com/ 'unsafe-inline' https://fonts.googleapis.com/ https://tagmanager.google.com/ https://www.googletagmanager.com/ https://cdn.luigisbox.com/; img-src 'nonce-sX2aiRqtvcPBWSBqiCL/iA==' 'self' data: data: https://fitplus.sk/ https://fitplus.fitness/ https://www.heureka.sk/ https://im9.cz/ https://www.facebook.com/ https://vars.hotjar.com/ https://script.hotjar.com/ https://www.shoproku.sk/ https://*.smartsuppcdn.com https://*.clarity.ms/ https://c.seznam.cz/ https://c.bing.com/ https://www.google.com/ https://www.google.sk/ https://www.google.cz/ https://www.google-analytics.com/ https://stats.g.doubleclick.net/ https://www.googletagmanager.com/ https://c.imedia.cz/ https://ssl.gstatic.com/ https://www.gstatic.com/ https://fonts.gstatic.com/ http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io https://www.facebook.com/ https://www.google.cz/ blob: https://maps.googleapis.com/; font-src 'nonce-sX2aiRqtvcPBWSBqiCL/iA==' 'self' https://script.hotjar.com/ http://script.hotjar.com/ https://fonts.googleapis.com/ https://fonts.gstatic.com/ https://*.smartsuppcdn.com https://fonts.gstatic.com/ data: http://*.hotjar.com https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io; media-src 'self' https://*.smartsuppcdn.com https://www.youtube.com/ https://www.instagram.com/ https://www.facebook.com/ https://twitter.com/ https://twitframe.com/; frame-ancestors 'self'; frame-src 'self' https://vars.hotjar.com/ https://www.heureka.sk/ https://www.facebook.com/ https://www.youtube.com/ https://www.google.com/ https://ssl.heureka.sk/ https://secure-fra.livechatinc.com/ https://www.google.com/ https://www.google.sk/ https://www.google.cz/ https://www.googletagmanager.com/ https://apis.google.com/ https://*.hotjar.com http://*.hotjar.io https://*.hotjar.io https://www.facebook.com/ https://www.youtube.com/ https://www.instagram.com/ https://www.facebook.com/ https://twitter.com/ https://twitframe.com/ https://widget3.packeta.com/ https://widget.packeta.com/; connect-src 'self' data: https://vars.hotjar.com/ https://vc.hotjar.io/ https://*.hotjar.com/ http://*.hotjar.com/ wss://*.hotjar.com/ https://*.smartlook.cloud/ https://*.smartlook.com/ https://www.google.com/recaptcha/ https://*.analytics.google.com/ https://www.gstatic.com/recaptcha/ wss://*.smartsupp.com https://*.smartsupp.com https://*.smartsuppchat.com https://*.smartsuppcdn.com https://bam.eu01.nr-data.net https://bam-cell.nr-data.net https://*.clarity.ms/ https://www.google.cz/ https://apicz-test.homecredit.cz/ https://apisk-test.homecredit.sk/ https://api.homecredit.cz/ https://api.homecredit.sk/ https://myloan.cz00t3.hccs.cz/ https://myloan.sk00t3.hccs.cz/ https://onesignal.com/ https://nasplatky.homecredit.cz/ https://nasplatky.homecredit.sk/ https://www.facebook.com/ https://stats.g.doubleclick.net/ https://www.google.com/pagead/ https://analytics.google.com/ https://*.analytics.google.com/ https://*.google-analytics.com/ https://www.google.sk/ https://googleads.g.doubleclick.net/ https://www.googletagmanager.com/ https://www.google-analytics.com/ http://*.hotjar.com:* https://*.hotjar.com:* http://*.hotjar.io https://*.hotjar.io wss://*.hotjar.com https://www.google-analytics.com/ https://www.googletagmanager.com/ https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://api.luigisbox.com/ https://live.luigisbox.com/ https://widget.packeta.com/v6/api/; object-src 'self'; form-action 'self' https://test.3dsecure.gpwebpay.com/ https://3dsecure.gpwebpay.com/ https://zmluvnik.quatro.sk/ https://www.facebook.com/ https://vars.hotjar.com/ https://quatroapi.vub.sk/ https://quatro.vub.sk/ https://apicz-test.homecredit.cz/ https://apisk-test.homecredit.sk/ https://api.homecredit.cz/ https://api.homecredit.sk/ https://www.fitplus.cz/ https://www.fitplus.sk/ https://onesignal.com/ https://nasplatky.homecredit.cz/ https://nasplatky.homecredit.sk/ https://www.facebook.com/; manifest-src 'self'; base-uri 'self'; upgrade-insecure-requests; report-uri https://8dca21ccf2b541a97e86f6ebf6075fa0.report-uri.com/r/d/csp/enforce; child-src https://cdn.onesignal.com/ https://onesignal.com/; worker-src blob: https://onesignal.com/ https://fitplus.sk/ https://www.fitplus.sk/ https://fitplus.cz/ https://www.fitplus.cz/;
vary: X-Requested-With,Accept-Encoding
set-cookie: nette-samesite=1; path=/; secure; HttpOnly; SameSite=Strict
set-cookie: PHPSESSID=l6997at523ueas1vkb0ud0s85v; expires=Sat, 25-Feb-2023 19:36:41 GMT; Max-Age=8640000; path=/; secure; HttpOnly; SameSite=Lax
x-xss-protection: 1;mode=block
access-control-allow-origin: *
content-type: text/html; charset=utf-8
|