Location: https://demo.fareharbor.com:443/
Content-Type: text/html
Content-Type: text/html
Content-Type: application/javascript
Content-Type: application/javascript
Content-Type: text/plain
Content-Type: text/javascript
Content-Type: text/html
Content-Type: application/json
Content-Type: text/html
Date: Tue, 28 May 2024 08:26:18 GMT
Server: awselb/2.0
Location: https://demo.fareharbor.com:443/
Content-Type: text/html
Content-Length: 134
P3p: CP="This is not a P3P policy."
Date: Tue, 28 May 2024 08:26:20 GMT
Vary: Accept-Encoding, Cookie
Set-Cookie: csrftoken=qWOh8yrwL99lri19gVdhgtdPzaKENdkWv8iyrtiq0eY8DlNYtGnBRMXF0lQYvcfd; expires=Tue, 27 May 2025 08:26:20 GMT; Max-Age=31449600; Path=/; SameSite=Strict; Secure
Content-Type: text/html; charset=utf-8
X-Amzn-Trace-Id: Root=1-6655952a-7655ae5d1fb2bfb153854de5
X-Frame-Options: SAMEORIGIN
Content-Language: en-us
X-Xss-Protection: 1; mode=block
X-Fh-Loadbalancer: demo
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000
Content-Security-Policy-Report-Only: form-action 'self'; script-src 'unsafe-inline' 'unsafe-eval' https://content.fareharbor.me https://js.stripe.com *.adyen.com *.mxpnl.com cdn.mxpnl.com *.filestackapi.com https://js.pusher.com https://www.google.com *.googleapis.com https://ssl.google-analytics.com https://www.google-analytics.com *.adroll.com *.adroll.mgr.consensu.org *.facebook.net *.facebook.com *.cloudflare.com *.hotjar.com https://www.googletagmanager.com https://googleads.g.doubleclick.net https://www.googleadservices.com *.gstatic.com *.paypal.com https://translate.google.com https://*.pusher.com https://ssl.google-analytics.com https://www.google-analytics.com d1jdrlbf64rhdd.cloudfront.net demo.fareharbor.com; frame-src https://js.stripe.com https://hooks.stripe.com *.adyen.com *.filestackapi.com *.googletagmanager.com *.hotjar.com https://www.google.com airtable.com player.vimeo.com facebook.com *.paypal.com https://bid.g.doubleclick.net demo.fareharbor.com; default-src 'none'; base-uri 'self'; object-src 'none'; style-src 'unsafe-inline' content.fareharbor.me *.googleapis.com https://www.gstatic.com d1jdrlbf64rhdd.cloudfront.net demo.fareharbor.com; font-src 'self' data: fh-sites.imgix.net; connect-src wss://ws.pusherapp.com https://api.stripe.com https://www.google-analytics.com https://*.google-analytics.com https://*.analytics.google.com https: demo.fareharbor.com wss:; img-src data: image/svg+xml image/png cdn.filestackcontent.com fh-sites.imgix.net https://www.google-analytics.com www.tripadvisor.com https://www.google.com d.adroll.com facebook.com bat.bing.com www.googletagmanager.com https://googleads.g.doubleclick.net https://www.facebook.com https://www.filepicker.io https//*.gstatic.com d1jdrlbf64rhdd.cloudfront.net d1a2dkr8rai8e2.cloudfront.net demo.fareharbor.com; report-uri /csp-report/