forked from random-robbie/bugbounty-scans
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
root
committed
Oct 5, 2017
1 parent
629dd76
commit c086774
Showing
5,208 changed files
with
780,975 additions
and
0 deletions.
The diff you're trying to view is too large. We only load the first 3000 changed files.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,25 @@ | ||
Accept-Ranges: bytes | ||
Age: 61 | ||
Cache-Control: max-age=1200, public | ||
Content-Length: 646769 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https: 'sha256-Q5XE16X5zAhH/wvkJBoUIyRz1majl7a7U0JAZuQDRMc=' 'sha256-11bVsHJNXc3GrgcH8r4ZM9NwAw3ZwUVDm7MIdtgtPOs='; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=show&controller=homepages&report_only=false&req_uuid=62cbbee8-863b-402f-84f0-2632581ff2d7&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: text/html; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:01 GMT | ||
Etag: "39d1c74d1363f573bd45dcf0db257695" | ||
Fastly-Debug-Digest: 13c842b5cfb5f9373edb1011565ac59eafe2f1028d2656d3d11d3acbb8ca79e2 | ||
Link: <https://a0.muscache.com/airbnb/static/packages/common-2819e1a761841c940762b61c81934adc.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/common_o2.1-3642e3083c323edc15904078d1315474.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/map_search-e300aa9e81cfa7f857ccb15b62924532.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/spa_react_dates_overrides-362ec28977f18aa6a83bd1ba3254397d.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Book-e94c982d7dee01d7e4424157ac9ed819.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Bold-367d5e0d3e7021de6510f7824d33188f.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Light-199f6f9d92c4f5f0cabe9ce7765467a9.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/packages/header_cookie.bundle-aa3d876ed11671f31a4e.js>;rel=preload;as=script | ||
Server: nginx/1.7.12 | ||
Set-Cookie: xplwp2=new_marquee_2; expires=Mon, 04 Dec 2017 10:32:01 GMT; domain=.airbnb.com; path=/ | ||
Status: 200 200 OK | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
Via: 1.1 varnish 1.1 varnish | ||
X-Cache: HIT, HIT | ||
X-Cache-Hits: 1, 1 | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Served-By: cache-iad2133-IAD, cache-ams4444-AMS | ||
X-Server-Name: www.airbnb.com | ||
X-Timer: S1507199522.502077,VS0,VE1 | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,25 @@ | ||
Accept-Ranges: bytes | ||
Age: 379 | ||
Cache-Control: max-age=1200, public | ||
Content-Length: 646769 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https: 'sha256-Q5XE16X5zAhH/wvkJBoUIyRz1majl7a7U0JAZuQDRMc=' 'sha256-11bVsHJNXc3GrgcH8r4ZM9NwAw3ZwUVDm7MIdtgtPOs='; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=show&controller=homepages&report_only=false&req_uuid=759425e2-75e4-4d35-8ceb-6ba5c1ca0f19&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: text/html; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:11 GMT | ||
Etag: "5840af5b68bc99f098609846ffb542d2" | ||
Fastly-Debug-Digest: b9a1ba07d34f2dc41db4942b975339b7615bbdea24f237e6fc8886c7fd0c6fb8 | ||
Link: <https://a0.muscache.com/airbnb/static/packages/common-2819e1a761841c940762b61c81934adc.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/common_o2.1-3642e3083c323edc15904078d1315474.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/map_search-e300aa9e81cfa7f857ccb15b62924532.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/spa_react_dates_overrides-362ec28977f18aa6a83bd1ba3254397d.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Book-e94c982d7dee01d7e4424157ac9ed819.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Bold-367d5e0d3e7021de6510f7824d33188f.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Light-199f6f9d92c4f5f0cabe9ce7765467a9.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/packages/header_cookie.bundle-aa3d876ed11671f31a4e.js>;rel=preload;as=script | ||
Server: nginx/1.7.12 | ||
Set-Cookie: xplwp2=new_marquee; expires=Mon, 04 Dec 2017 10:32:11 GMT; domain=.airbnb.com; path=/ | ||
Status: 200 200 OK | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
Via: 1.1 varnish 1.1 varnish | ||
X-Cache: HIT, HIT | ||
X-Cache-Hits: 1, 3 | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Served-By: cache-iad2143-IAD, cache-ams4146-AMS | ||
X-Server-Name: www.airbnb.com | ||
X-Timer: S1507199531.341309,VS0,VE0 | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
Cache-Control: no-cache | ||
Connection: keep-alive | ||
Content-Length: 79 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https:; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=invalid_action&controller=base&report_only=false&req_uuid=4e21e600-09ae-43f1-b4c5-ab7a3438e37b&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: application/json; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:33:02 GMT | ||
Etag: W/"5fe4987780ad12270b0e6d621ce85732" | ||
Server: nginx/1.7.12 | ||
Status: 404 Not Found | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,14 @@ | ||
Cache-Control: no-cache | ||
Content-Length: 79 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https:; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=invalid_action&controller=base&report_only=false&req_uuid=268b1b08-8613-481a-951c-fbf8362f570b&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: application/json; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:46 GMT | ||
Etag: W/"5fe4987780ad12270b0e6d621ce85732" | ||
Server: nginx/1.7.12 | ||
Status: 404 404 Not Found | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
15 changes: 15 additions & 0 deletions
15
airbnb.com/headers/api_next_airbnb_com__104_94_0_145__443.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
Cache-Control: no-cache | ||
Connection: keep-alive | ||
Content-Length: 79 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https:; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=invalid_action&controller=base&report_only=false&req_uuid=aff4130f-0189-4e9c-9e3e-6eda130c58fb&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: application/json; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:08 GMT | ||
Etag: W/"5fe4987780ad12270b0e6d621ce85732" | ||
Server: nginx/1.7.12 | ||
Status: 404 Not Found | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
14 changes: 14 additions & 0 deletions
14
airbnb.com/headers/api_next_airbnb_com__104_94_0_145__80.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,14 @@ | ||
Cache-Control: no-cache | ||
Content-Length: 79 | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https:; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=invalid_action&controller=base&report_only=false&req_uuid=aafcba72-b9a7-49d3-b0a5-89be2dffb65c&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: application/json; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:39 GMT | ||
Etag: W/"5fe4987780ad12270b0e6d621ce85732" | ||
Server: nginx/1.7.12 | ||
Status: 404 404 Not Found | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
13 changes: 13 additions & 0 deletions
13
airbnb.com/headers/assets_airbnb_com__92_122_201_70__443.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,13 @@ | ||
Access-Control-Allow-Methods: GET | ||
Access-Control-Allow-Origin: * | ||
Connection: keep-alive | ||
Content-Length: 243 | ||
Content-Type: application/xml | ||
Date: Thu, 05 Oct 2017 10:32:18 GMT | ||
Server: AmazonS3 | ||
Vary: Origin, Access-Control-Request-Headers, Access-Control-Request-Method | ||
X-Amz-Bucket-Region: us-east-1 | ||
X-Amz-Id-2: zcNtxr8CImWIxpsKPRpx3gNMaYE5FaReKBKjy86bV4xESyBoXctCkhYTc+zolw8oN4CypF80nFE= | ||
X-Amz-Request-Id: 75B403EB0F75BF2C | ||
X-Edgeconnect-Midmile-Rtt: 18 | ||
X-Edgeconnect-Origin-Mex-Latency: 397 |
13 changes: 13 additions & 0 deletions
13
airbnb.com/headers/assets_airbnb_com__92_122_201_70__80.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,13 @@ | ||
Access-Control-Allow-Methods: GET | ||
Access-Control-Allow-Origin: * | ||
Connection: keep-alive | ||
Content-Length: 243 | ||
Content-Type: application/xml | ||
Date: Thu, 05 Oct 2017 10:32:05 GMT | ||
Server: AmazonS3 | ||
Vary: Origin, Access-Control-Request-Headers, Access-Control-Request-Method | ||
X-Amz-Bucket-Region: us-east-1 | ||
X-Amz-Id-2: DTnKqZv+IonwcLMAY26lip5/95wBF4RYwgpyuYBJUhETWderdwe8VoPfpJ1ZUqwEvKT58h4wo4A= | ||
X-Amz-Request-Id: 91FD8B90970BE8D5 | ||
X-Edgeconnect-Midmile-Rtt: 19 | ||
X-Edgeconnect-Origin-Mex-Latency: 200 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
Cache-Control: max-age=1200, public | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https: 'sha256-Q5XE16X5zAhH/wvkJBoUIyRz1majl7a7U0JAZuQDRMc=' 'sha256-rfTud2kTm0UjtJ6PqxcrkglfrUD4H8WCcS9mCs6PJ5s='; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=show&controller=homepages&report_only=false&req_uuid=686bad8d-ba0e-4131-978a-1e8d8df017f7&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: text/html; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:32:36 GMT | ||
Etag: W/"cf683f7c4140d156bf57a5ce07edaf66" | ||
Link: <https://a0.muscache.com/airbnb/static/packages/common-2819e1a761841c940762b61c81934adc.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/common_o2.1-3642e3083c323edc15904078d1315474.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/map_search-e300aa9e81cfa7f857ccb15b62924532.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/spa_react_dates_overrides-362ec28977f18aa6a83bd1ba3254397d.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Book-e94c982d7dee01d7e4424157ac9ed819.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Bold-367d5e0d3e7021de6510f7824d33188f.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Light-199f6f9d92c4f5f0cabe9ce7765467a9.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/packages/header_cookie.bundle-aa3d876ed11671f31a4e.js>;rel=preload;as=script | ||
Server: nginx/1.7.12 | ||
Set-Cookie: bev=1507199555_JltqK2GoU1A6UxlX; domain=.airbnb.cat; path=/; expires=Sat, 05-Oct-2019 10:32:35 GMT; secure _csrf_token=V4%24.airbnb.cat%24LDRarpMa-sE%24nx41BxrGEps4EpNhp1zFGTcZz_va_OAB9DlUGF1wDGk%3D; domain=.airbnb.cat; path=/; secure _user_attributes=%7B%22curr%22%3A%22EUR%22%2C%22guest_exchange%22%3A0.85004%2C%22device_profiling_session_id%22%3A%221507199556--0900eca7cf6510baa6351888%22%2C%22giftcard_profiling_session_id%22%3A%221507199556--e2acbddfafc4f73858553cbd%22%2C%22reservation_profiling_session_id%22%3A%221507199556--aeb63c5088ed7ddeec21da66%22%7D; domain=.airbnb.cat; path=/; expires=Sat, 05-Oct-2019 10:32:36 GMT; secure flags=268435456; domain=.airbnb.cat; path=/; secure xplwp2=control; expires=Mon, 04-Dec-2017 10:32:36 GMT; path=/; domain=.airbnb.cat | ||
Status: 200 200 OK | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
Cache-Control: max-age=1200, public | ||
Content-Security-Policy: default-src 'self' https: blob:; child-src *; connect-src 'self' https: wss: *.amap.com *.inspectlet.com; font-src 'self' data: *.muscache.com fonts.gstatic.com use.typekit.net; img-src 'self' https: data: *.inspectlet.com; media-src 'self' https:; script-src 'self' 'unsafe-eval' 'unsafe-inline' a0.muscache.com cdn.siftscience.com bat.bing.com connect.facebook.net www.google-analytics.com www.googleadservices.com tpc.googlesyndication.com www.googletagmanager.com maps.googleapis.com ajax.googleapis.com app.link cdn.branch.io bam.nr-data.net js-agent.newrelic.com sslwidget.criteo.com static.criteo.net dis.criteo.com widget.us.criteo.com ethn.io blob: webapi.amap.com restapi.amap.com *.inspectlet.com https: 'sha256-Q5XE16X5zAhH/wvkJBoUIyRz1majl7a7U0JAZuQDRMc=' 'sha256-rfTud2kTm0UjtJ6PqxcrkglfrUD4H8WCcS9mCs6PJ5s='; style-src 'self' https: 'unsafe-inline'; report-uri /tracking/csp?action=show&controller=homepages&report_only=false&req_uuid=1b240aba-2450-4849-8c00-c503817ff165&version=cd31aa1ec53508bbc924787c2c2917c494c3f589 | ||
Content-Type: text/html; charset=utf-8 | ||
Date: Thu, 05 Oct 2017 10:33:04 GMT | ||
Etag: W/"ef080551ae535279744c42d8c7a49e24" | ||
Link: <https://a0.muscache.com/airbnb/static/packages/common-2819e1a761841c940762b61c81934adc.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/common_o2.1-3642e3083c323edc15904078d1315474.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/map_search-e300aa9e81cfa7f857ccb15b62924532.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/packages/spa_react_dates_overrides-362ec28977f18aa6a83bd1ba3254397d.css>;rel=preload;as=style,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Book-e94c982d7dee01d7e4424157ac9ed819.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Bold-367d5e0d3e7021de6510f7824d33188f.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/airbnb-o2/fonts/Circular_Air-Light-199f6f9d92c4f5f0cabe9ce7765467a9.woff2>;rel=preload;as=font;type=font/woff2;crossorigin=crossorigin,<https://a0.muscache.com/airbnb/static/packages/header_cookie.bundle-aa3d876ed11671f31a4e.js>;rel=preload;as=script | ||
Server: nginx/1.7.12 | ||
Set-Cookie: bev=1507199583_oHWgIpXQCfhMS5%2FZ; domain=.airbnb.cat; path=/; expires=Sat, 05-Oct-2019 10:33:03 GMT; secure _csrf_token=V4%24.airbnb.cat%24Y2aK9lapqVc%24a9sYOU0p94frtMykxqtz6inc6H13DEA3vM-yc5VVtwc%3D; domain=.airbnb.cat; path=/; secure _user_attributes=%7B%22curr%22%3A%22EUR%22%2C%22guest_exchange%22%3A0.85004%2C%22device_profiling_session_id%22%3A%221507199584--a2a5121e5116ec0b915ef3bc%22%2C%22giftcard_profiling_session_id%22%3A%221507199584--ae1a450ca325e4bce983c417%22%2C%22reservation_profiling_session_id%22%3A%221507199584--46c6905eee68f93fb1b39baa%22%7D; domain=.airbnb.cat; path=/; expires=Sat, 05-Oct-2019 10:33:04 GMT; secure flags=268435456; domain=.airbnb.cat; path=/; secure xplwp2=new_marquee_2; expires=Mon, 04-Dec-2017 10:33:04 GMT; path=/; domain=.airbnb.cat | ||
Status: 200 200 OK | ||
Strict-Transport-Security: max-age=10886400; includeSubdomains | ||
Vary: Accept-Encoding | ||
X-Content-Type-Options: nosniff | ||
X-Frame-Options: SAMEORIGIN | ||
X-Ua-Compatible: IE=Edge,chrome=1 | ||
X-Xss-Protection: 1; mode=block |
5 changes: 5 additions & 0 deletions
5
airbnb.com/headers/callbacks_airbnb_com__92_122_201_70__443.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,5 @@ | ||
Connection: keep-alive | ||
Content-Length: 571 | ||
Content-Type: text/html | ||
Date: Thu, 05 Oct 2017 10:32:32 GMT | ||
Server: nginx/1.7.12 |
5 changes: 5 additions & 0 deletions
5
airbnb.com/headers/callbacks_airbnb_com__92_122_201_70__80.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,5 @@ | ||
Content-Length: 571 | ||
Content-Type: text/html | ||
Date: Thu, 05 Oct 2017 10:32:33 GMT | ||
Server: nginx/1.7.12 | ||
Status: 403 |
Oops, something went wrong.