HTTP/1.1 301 Moved Permanently
Server: nginx
Date: Mon, 27 Dec 2021 09:18:46 GMT
Content-Type: text/html
Content-Length: 162
Connection: keep-alive
Location: https://lera.hr/
Host-Header: 8441280b0c35cbc1147f8ba998a563a7
X-HTTPS-Enforce: 1
X-Proxy-Cache-Info: DT:1
HTTP/2 302
server: nginx
date: Mon, 27 Dec 2021 09:18:47 GMT
content-type: text/html; charset=UTF-8
location: https://www.lera.hr/
set-cookie: PHPSESSID=af6e7ca544e2fd7b317aed52b9acfe5f; expires=Mon, 27-Dec-2021 10:18:47 GMT; Max-Age=3600; path=/; domain=.lera.hr; secure; HttpOnly; SameSite=Lax
expires: Sun, 27 Dec 2020 09:18:47 GMT
cache-control: max-age=0, must-revalidate, no-cache, no-store
pragma: no-cache
set-cookie: X-Magento-Vary=7ad851671356eb8fbf873fbdb216dde0a2e0c003; expires=Mon, 27-Dec-2021 10:18:47 GMT; Max-Age=3600; path=/; secure; HttpOnly; SameSite=Lax
content-security-policy-report-only: font-src fonts.gstatic.com data: *.cloudflare.com *.twitter.com *.gstatic.com *.typekit.net *.twimg.com *.trustedshops.com *.googleapis.com *.youtube.com *.vimeo.com data: 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net *.twitter.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src secure.authorize.net test.authorize.net player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ *.twitter.com *.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com *.'self' data: www.paypalobjects.com t.paypal.com *.vimeocdn.com i.ytimg.com data: *.cloudflare.com *.klarna.com *.google.hr *.google.com *.googleadservices.com *.google-analytics.com *.paypal.com *.twitter.com *.twimg.com *.ytimg.com *.lightemporium.com *.usercentrics.eu *.facebook.com *.glami.hr data: 'self' 'unsafe-inline'; script-src secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ cdn.ampproject.org raw.githubusercontent.com *.cloudflare.com *.twitter.com *.google-analytics.com *.googletagmanager.com *.googleadservices.com *.googleads.g.doubleclick.net *.google.com *.twimg.com *.gstatic.com *.trustedshops.com *.usercentrics.eu *.fontawesome.com *.connect.facebook.net *.glami.cz 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.cloudflare.com *.googleapis.com *.twitter.com *.twimg.com *.gstatic.com *.typekit.net *.trustedshops.com *.usercentrics.eu *.fontawesome.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src cdn.ampproject.org *.google-analytics.com *.cloudflare.com *.twitter.com *.paypal.com *.twimg.com *.facebook.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
strict-transport-security: max-age=31536000
content-security-policy: upgrade-insecure-requests;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-httpd-modphp: 1
x-ua-compatible: IE=edge
host-header: 8441280b0c35cbc1147f8ba998a563a7
x-proxy-cache-info: DT:1
HTTP/2 200
date: Mon, 27 Dec 2021 09:18:48 GMT
content-type: text/html; charset=UTF-8
vary: Accept-Encoding
set-cookie: PHPSESSID=3672abbce897226f6e42855853fec336; expires=Mon, 27-Dec-2021 10:18:48 GMT; Max-Age=3600; path=/; domain=.lera.hr; secure; HttpOnly; SameSite=Lax
set-cookie: X-Magento-Vary=7ad851671356eb8fbf873fbdb216dde0a2e0c003; expires=Mon, 27-Dec-2021 10:18:48 GMT; Max-Age=3600; path=/; secure; HttpOnly; SameSite=Lax
expires: Sun, 27 Dec 2020 08:58:39 GMT
cache-control: max-age=0, must-revalidate, no-cache, no-store
pragma: no-cache
link: ; rel=preload; as=image, ; rel=preload; as=image, ; rel=preload; as=script, ; rel=preload; as=script, ; rel=preload; as=script, ; rel=preload; as=script, ; rel=preload; as=style, ; rel=preload; as=style, ; rel=preload; as=style, ; rel=preload; as=style, ; rel=preload; as=style, ; rel=preload; as=font; crossorigin=anonymous, ; rel=preload; as=font; crossorigin=anonymous, ; rel=preload; as=font; crossorigin=anonymous, ; rel=preload; as=font; crossorigin=anonymous, ; rel=preload; as=font; crossorigin=anonymous
content-security-policy-report-only: font-src fonts.gstatic.com data: *.cloudflare.com *.twitter.com *.gstatic.com *.typekit.net *.twimg.com *.trustedshops.com *.googleapis.com *.youtube.com *.vimeo.com data: 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net *.twitter.com 'self' 'unsafe-inline'; frame-ancestors 'self'; frame-src secure.authorize.net test.authorize.net player.vimeo.com *.youtube.com https://www.google.com/recaptcha/ *.twitter.com *.google.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com *.'self' data: www.paypalobjects.com t.paypal.com *.vimeocdn.com i.ytimg.com data: *.cloudflare.com *.klarna.com *.google.hr *.google.com *.googleadservices.com *.google-analytics.com *.paypal.com *.twitter.com *.twimg.com *.ytimg.com *.lightemporium.com *.usercentrics.eu *.facebook.com *.glami.hr data: 'self' 'unsafe-inline'; script-src secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com s.ytimg.com www.googleapis.com vimeo.com www.vimeo.com *.vimeocdn.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ cdn.ampproject.org raw.githubusercontent.com *.cloudflare.com *.twitter.com *.google-analytics.com *.googletagmanager.com *.googleadservices.com *.googleads.g.doubleclick.net *.google.com *.twimg.com *.gstatic.com *.trustedshops.com *.usercentrics.eu *.fontawesome.com *.connect.facebook.net *.glami.cz 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.cloudflare.com *.googleapis.com *.twitter.com *.twimg.com *.gstatic.com *.typekit.net *.trustedshops.com *.usercentrics.eu *.fontawesome.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src cdn.ampproject.org *.google-analytics.com *.cloudflare.com *.twitter.com *.paypal.com *.twimg.com *.facebook.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline' 'unsafe-eval' 'strict-dynamic'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
strict-transport-security: max-age=31536000
content-security-policy: upgrade-insecure-requests;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-httpd-modphp: 1
x-ua-compatible: IE=edge
host-header: 8441280b0c35cbc1147f8ba998a563a7
x-proxy-cache-info: DT:1
cf-cache-status: DYNAMIC
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=8Cf%2FOH%2FZ6y642pm95pPTmK9Cea8rz1Cd1amG%2FNnQG%2FI4FSdN0eSD5ttq%2BTGdPfcCR%2BN3ihFHtVX6PQWJM1HKP8zW3RavuonsRhxBNBUtLimmrDWMzIptzmyHlq4Crw%3D%3D"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server: cloudflare
cf-ray: 6c4176ac5f518c1e-EWR
alt-svc: h3=":443"; ma=86400, h3-29=":443"; ma=86400, h3-28=":443"; ma=86400, h3-27=":443"; ma=86400
|