Domain headcovers.com
United States
CLOUDFLARENET
Software information

Apache Apache

tcp/443 tcp/80

cloudflare cloudflare

tcp/443 tcp/80 tcp/8443

  • GraphQL introspection is enabled.
    First seen 2025-10-18 16:50
    Last seen 2026-01-02 12:53
    Open for 75 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 12:53
      784.1 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef85630091207

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 10:19
      784.1 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-10 13:03
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-11-28 16:50
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2

      GraphQL introspection enabled at /graphql/api
      Found on 2025-11-26 22:46
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-10 08:57
      775.3 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade

      GraphQL introspection enabled at /graphql/api
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-10-28 14:02
      775.6 kBytes
  • GraphQL introspection is enabled.
    First seen 2025-10-17 05:21
    Last seen 2026-01-02 17:28
    Open for 77 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 17:28
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-11 10:33
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-11-22 09:51
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-16 22:32
      774.3 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3

      GraphQL introspection enabled at /graphql
      Found on 2025-10-30 17:26
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e20874f103d9761101df2a026f57618799dbc642a9

      GraphQL introspection enabled at /graphql/api
      Types: 685 (by kind: ENUM: 48, INPUT_OBJECT: 165, INTERFACE: 29, OBJECT: 433, SCALAR: 5, UNION: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-10-17 05:21
      1.1 MBytes
  • GraphQL introspection is enabled.
    First seen 2025-10-18 03:23
    Last seen 2026-01-02 21:03
    Open for 76 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef85630091207

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 21:03
      784.1 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2025-12-25 03:03
      784.1 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-01 13:18
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-11-28 20:22
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade

      GraphQL introspection enabled at /graphql/api
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-01 08:24
      775.3 kBytes
  • GraphQL introspection is enabled.
    First seen 2025-10-25 06:37
    Last seen 2026-01-02 17:41
    Open for 69 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 17:41
      782.6 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-01 20:04
      782.6 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0

      GraphQL introspection enabled at /graphql/api
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-01 20:04
      782.6 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-23 12:35
      774.1 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade

      GraphQL introspection enabled at /graphql/api
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-16 20:21
      774.1 kBytes
  • GraphQL introspection is enabled.
    First seen 2025-11-02 08:08
    Last seen 2026-01-02 17:58
    Open for 61 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 17:58
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-01 00:02
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-16 06:44
      775.3 kBytes
  • GraphQL introspection is enabled.
    First seen 2025-10-19 10:22
    Last seen 2026-01-02 23:49
    Open for 75 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 23:49
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-10 20:12
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-16 19:41
      774.3 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade

      GraphQL introspection enabled at /graphql/api
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-10-29 10:08
      775.3 kBytes
  • GraphQL introspection is enabled.
    First seen 2025-10-16 10:25
    Last seen 2026-01-02 20:49
    Open for 78 days
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Detected: Magento
      Found on 2026-01-02 20:49
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf

      GraphQL introspection enabled at /graphql
      Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, oneOf, skip (total: 4)
      
      Found on 2025-12-01 00:04
      783.8 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681

      GraphQL introspection enabled at /graphql
      Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-11-14 12:38
      774.3 kBytes
    • Severity: medium
      Fingerprint: c2db3a1c40d490db1a0bbaa3f3e379d62bdaea06e13682b4b48948de51f15d2e

      GraphQL introspection enabled at /graphql
      Types: 685 (by kind: ENUM: 48, INPUT_OBJECT: 165, INTERFACE: 29, OBJECT: 433, SCALAR: 5, UNION: 5)
      Operations:
      - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments
      - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants
      Directives: deprecated, include, skip (total: 3)
      
      Found on 2025-10-16 10:25
      1.1 MBytes
  • Open service 104.20.23.190:80 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 301 Moved Permanently
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9bb9cf7fdb484dc7-FRA
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:8443 · www.headcovers.com

    2026-01-10 05:35

    
                                
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:8443 · www.headcovers.com

    2026-01-10 05:35

    
                                
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:443 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 200 OK
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Type: text/html; charset=UTF-8
    Transfer-Encoding: chunked
    Connection: close
    pragma: cache
    expires: Sun, 10 Jan 2027 05:33:12 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:80 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 301 Moved Permanently
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9bb9cf7f1b044271-EWR
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 104.20.23.190:8443 · www.headcovers.com

    2026-01-10 05:35

    
                                
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:443 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 200 OK
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Type: text/html; charset=UTF-8
    Transfer-Encoding: chunked
    Connection: close
    pragma: cache
    expires: Sun, 10 Jan 2027 05:35:19 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:80 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 301 Moved Permanently
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9bb9cf7f0b958c73-EWR
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 104.20.23.190:443 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 200 OK
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Type: text/html; charset=UTF-8
    Transfer-Encoding: chunked
    Connection: close
    pragma: cache
    expires: Sun, 10 Jan 2027 05:35:19 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 172.66.148.78:8443 · www.headcovers.com

    2026-01-10 05:35

    
                                
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 172.66.148.78:80 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 301 Moved Permanently
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9bb9cf7eed5241f9-EWR
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 172.66.148.78:443 · www.headcovers.com

    2026-01-10 05:35

    HTTP/1.1 200 OK
    Date: Sat, 10 Jan 2026 05:35:21 GMT
    Content-Type: text/html; charset=UTF-8
    Transfer-Encoding: chunked
    Connection: close
    pragma: cache
    expires: Sun, 10 Jan 2027 05:33:54 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · staging.headcovers.com

    2026-01-10 02:12

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 223433
    Pragma: cache
    Expires: Sat, 09 Jan 2027 20:28:29 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sat, 10 Jan 2026 02:12:03 GMT
    Age: 20613
    X-Served-By: cache-chi-kigq8000109-CHI, cache-yyz4563-YYZ
    X-Cache: HIT, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1768011123.398668,VS0,VE3
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: CA
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/versio
    Found 2026-01-10 by HttpPlugin
    Create report
  • Open service 192.240.173.183:443 · dev.headcovers.com

    2026-01-09 23:15

    HTTP/1.1 200 OK
    Date: Fri, 09 Jan 2026 23:15:40 GMT
    Server: Apache
    Pragma: cache
    Expires: Sat, 09 Jan 2027 23:15:40 GMT
    Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
    fastly-page-cacheable: YES
    X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
    Fastly-Module-Enabled: 1.2.233
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=bf84400639a1f5711f303dbaf9b594e6; expires=Sat, 10-Jan-2026 23:15:40 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Vary: Accept-Encoding
    X-Frame-Options: SAMEORIGIN
    Transfer-Encoding: chunked
    Content-Type: text/html; charset=UTF-8
    
    2000
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="te
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 192.240.173.182:80 · admin.headcovers.com

    2026-01-09 20:00

    HTTP/1.1 301 Moved Permanently
    date: Fri, 09 Jan 2026 20:00:32 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 09 Jan 2025 20:00:32 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=c34b1ac4bbd9db520211cf46e4766cde; expires=Sat, 10-Jan-2026 20:00:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 192.240.173.182:80 · admin.headcovers.com

    2026-01-09 20:00

    HTTP/1.1 301 Moved Permanently
    date: Fri, 09 Jan 2026 20:00:32 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 09 Jan 2025 20:00:32 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=a5f78930920cd89f12d1b6383aef4a86; expires=Sat, 10-Jan-2026 20:00:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2026-01-09 17:21

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 267990
    pragma: cache
    expires: Sat, 09 Jan 2027 17:21:18 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Age: 42
    Date: Fri, 09 Jan 2026 17:22:01 GMT
    X-Served-By: gpc008-node2, cache-chi-klot8100151-CHI, cache-pao-kpao1770068-PAO
    X-Cache: HIT, MISS
    X-Cache-Hits: 9, 0
    X-Timer: S1767979321.017367,VS0,VE76
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css" 
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2026-01-09 17:05

    HTTP/1.1 301 Moved Permanently
    date: Fri, 09 Jan 2026 17:05:44 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 09 Jan 2025 17:05:44 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=5d3ace61e59a0103e72469e94852917c; expires=Sat, 10-Jan-2026 17:05:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2026-01-09 16:50

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 09 Jan 2025 16:50:44 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=3b53ba26fdcb6698196863137619acd0; expires=Sat, 10-Jan-2026 16:50:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 09 Jan 2026 16:50:44 GMT
    X-Served-By: gpc008-node2, cache-chi-kigq8000145-CHI, cache-fra-eddf8230072-FRA
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767977444.025385,VS0,VE269
    Vary: Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2026-01-09 15:12

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 223433
    Pragma: cache
    Expires: Sat, 09 Jan 2027 15:12:48 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Age: 0
    Date: Fri, 09 Jan 2026 15:12:49 GMT
    X-Served-By: cache-chi-kigq8000109-CHI, cache-fra-eddf8230055-FRA
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767971568.393366,VS0,VE661
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/stati
    Found 2026-01-09 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2026-01-08 20:52

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 267990
    pragma: cache
    expires: Fri, 08 Jan 2027 20:52:10 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Thu, 08 Jan 2026 20:52:27 GMT
    Age: 17
    X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-pao-kpao1770072-PAO
    X-Cache: HIT, HIT
    X-Cache-Hits: 2, 1
    X-Timer: S1767905547.397481,VS0,VE48
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  
    Found 2026-01-08 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2026-01-08 20:42

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Wed, 08 Jan 2025 20:42:12 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=1d0fd18196d341bc416d68261de7b37c; expires=Fri, 09-Jan-2026 20:42:12 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Thu, 08 Jan 2026 20:42:12 GMT
    X-Served-By: gpc008-node2, cache-chi-kigq8000089-CHI, cache-sjc10023-SJC
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767904932.114685,VS0,VE193
    Vary: Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2026-01-08 by HttpPlugin
    Create report
  • Open service 151.101.205.91:443 · staging.headcovers.com

    2026-01-08 19:02

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 223433
    Pragma: cache
    Expires: Fri, 08 Jan 2027 09:12:11 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Thu, 08 Jan 2026 19:02:03 GMT
    Age: 35392
    X-Served-By: cache-chi-kigq8000109-CHI, cache-rtm-ehrd2290052-RTM
    X-Cache: HIT, HIT
    X-Cache-Hits: 9, 1
    X-Timer: S1767898923.078597,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/stati
    Found 2026-01-08 by HttpPlugin
    Create report
  • Open service 151.101.129.91:80 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    Retry-After: 0
    Location: https://staging.headcovers.com/
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:20 GMT
    X-Served-By: cache-sjc10034-SJC
    X-Cache: HIT
    X-Cache-Hits: 0
    X-Timer: S1767774561.613687,VS0,VE1
    Vary: 
    Currency: US
    Strict-Transport-Security: max-age=300
    
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Thu, 07 Jan 2027 08:29:18 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:21 GMT
    Age: 2
    X-Served-By: cache-chi-kigq8000109-CHI, cache-lga21960-LGA
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1767774561.197161,VS0,VE86
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.193.91:80 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    Retry-After: 0
    Location: https://staging.headcovers.com/
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:20 GMT
    X-Served-By: cache-sin-wsss1830067-SIN
    X-Cache: HIT
    X-Cache-Hits: 0
    X-Timer: S1767774561.569293,VS0,VE0
    Vary: 
    Currency: SG
    Strict-Transport-Security: max-age=300
    
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Thu, 07 Jan 2027 08:29:18 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:21 GMT
    Age: 2
    X-Served-By: cache-chi-kigq8000109-CHI, cache-fra-eddf8230066-FRA
    X-Cache: HIT, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1767774561.243613,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/ve
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.1.91:80 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    Retry-After: 0
    Location: https://staging.headcovers.com/
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:20 GMT
    X-Served-By: cache-bom-vanm7210045-BOM
    X-Cache: HIT
    X-Cache-Hits: 0
    X-Timer: S1767774561.548210,VS0,VE0
    Vary: 
    Currency: US
    Strict-Transport-Security: max-age=300
    
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.65.91:80 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    Retry-After: 0
    Location: https://staging.headcovers.com/
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:20 GMT
    X-Served-By: cache-sin-wsat1880088-SIN
    X-Cache: HIT
    X-Cache-Hits: 0
    X-Timer: S1767774560.430424,VS0,VE0
    Vary: 
    Currency: SG
    Strict-Transport-Security: max-age=300
    
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.193.91:443 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Thu, 07 Jan 2027 08:29:18 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:21 GMT
    Age: 2
    X-Served-By: cache-chi-kigq8000109-CHI, cache-rtm-ehrd2290043-RTM
    X-Cache: MISS, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1767774561.234196,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/v
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2026-01-07 08:29

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Thu, 07 Jan 2027 08:29:18 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Wed, 07 Jan 2026 08:29:21 GMT
    Age: 2
    X-Served-By: cache-chi-kigq8000109-CHI, cache-lga21985-LGA
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1767774561.192431,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1
    Found 2026-01-07 by HttpPlugin
    Create report
  • Open service 172.66.148.78:8443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e688c965037-SIN
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 172.66.148.78:443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e6748fa086a-YYZ
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e674825f900-SIN
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 104.20.23.190:443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e670e169b49-FRA
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:80 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e66c95ca452-SIN
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 104.20.23.190:80 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e66afd0c16b-LHR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 172.66.148.78:80 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:14 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e669b69ef2b-LHR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:8443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:13 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e666a8d0d85-EWR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 104.20.23.190:8443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:13 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e66482546d0-LHR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::6814:17be:8443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:13 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e661b76c341-EWR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:443 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:13 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e65e99c4ada-EWR
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 2606:4700:10::ac42:944e:80 · headcovers.com

    2026-01-04 09:13

    HTTP/1.1 301 Moved Permanently
    Date: Sun, 04 Jan 2026 09:13:13 GMT
    Content-Length: 0
    Connection: close
    Location: https://www.headcovers.com/
    Server: cloudflare
    CF-RAY: 9b899e65ce091d0c-FRA
    
    Found 2026-01-04 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2026-01-02 23:49

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 02 Jan 2025 23:49:53 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=621656034e38f69501d139e0728d53ec; expires=Sat, 03-Jan-2026 23:49:53 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 02 Jan 2026 23:49:53 GMT
    X-Served-By: gpc008-node2, cache-chi-kigq8000166-CHI, cache-yyz4552-YYZ
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767397793.350719,VS0,VE193
    Vary: Cookie
    Currency: CA
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.183:80 · dev.headcovers.com

    2026-01-02 21:03

    HTTP/1.1 301 Moved Permanently
    Date: Fri, 02 Jan 2026 21:03:07 GMT
    Server: Apache
    Pragma: no-cache
    Cache-Control: max-age=0, must-revalidate, no-cache, no-store
    Expires: Thu, 02 Jan 2025 21:03:07 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=f681d3025c1958427610481b93aecc65; expires=Sat, 03-Jan-2026 21:03:07 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Location: https://dev.headcovers.com/
    X-Frame-Options: SAMEORIGIN
    Content-Length: 0
    Content-Type: text/html; charset=UTF-8
    
    
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2026-01-02 20:49

    HTTP/1.1 301 Moved Permanently
    date: Fri, 02 Jan 2026 20:49:40 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 02 Jan 2025 20:49:40 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=6f160ab501906ede9f63af6b24e3c638; expires=Sat, 03-Jan-2026 20:49:40 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2026-01-02 19:51

    HTTP/1.1 301 Moved Permanently
    date: Fri, 02 Jan 2026 19:51:31 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 02 Jan 2025 19:51:31 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=390ea31537e946df3992677c9409d8e6; expires=Sat, 03-Jan-2026 19:51:31 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.182:80 · admin.headcovers.com

    2026-01-02 17:58

    HTTP/1.1 301 Moved Permanently
    date: Fri, 02 Jan 2026 17:58:54 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 02 Jan 2025 17:58:54 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=9d8772ac9c9becbe1a1a3b5f6cb89efd; expires=Sat, 03-Jan-2026 17:58:54 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2026-01-02 17:41

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Sat, 02 Jan 2027 17:41:48 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 02 Jan 2026 17:41:48 GMT
    Age: 0
    X-Served-By: cache-chi-kigq8000137-CHI, cache-rtm-ehrd2290056-RTM
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1767375709.600981,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/v
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2026-01-02 17:41

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 224110
    Pragma: cache
    Expires: Sat, 02 Jan 2027 17:41:48 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 02 Jan 2026 17:41:48 GMT
    Age: 0
    X-Served-By: cache-chi-kigq8000137-CHI, cache-rtm-ehrd2290028-RTM
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1767375709.598087,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/v
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2026-01-02 17:28

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 267990
    pragma: cache
    expires: Sat, 02 Jan 2027 17:27:09 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 02 Jan 2026 17:28:00 GMT
    Age: 51
    X-Served-By: gpc008-node2, cache-chi-klot8100151-CHI, cache-bom-vanm7210028-BOM
    X-Cache: HIT, HIT
    X-Cache-Hits: 4, 1
    X-Timer: S1767374881.749036,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  m
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.183:443 · dev.headcovers.com

    2026-01-02 12:53

    HTTP/1.1 200 OK
    Date: Fri, 02 Jan 2026 12:53:18 GMT
    Server: Apache
    Pragma: cache
    Expires: Sat, 02 Jan 2027 12:53:19 GMT
    Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
    fastly-page-cacheable: YES
    X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c114 cp_114 c291 cp_291 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
    Fastly-Module-Enabled: 1.2.233
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=a44ff15fd74989ff7c198bd253abee5f; expires=Sat, 03-Jan-2026 12:53:18 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Vary: Accept-Encoding
    X-Frame-Options: SAMEORIGIN
    Transfer-Encoding: chunked
    Content-Type: text/html; charset=UTF-8
    
    2000
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="te
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 192.240.173.183:443 · dev.headcovers.com

    2026-01-02 10:19

    HTTP/1.1 200 OK
    Date: Fri, 02 Jan 2026 10:19:20 GMT
    Server: Apache
    Pragma: cache
    Expires: Sat, 02 Jan 2027 10:19:21 GMT
    Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
    fastly-page-cacheable: YES
    X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
    Fastly-Module-Enabled: 1.2.233
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=a9fc7b2320b8cc60f1fc952d0fb58f7f; expires=Sat, 03-Jan-2026 10:19:20 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Vary: Accept-Encoding
    X-Frame-Options: SAMEORIGIN
    Transfer-Encoding: chunked
    Content-Type: text/html; charset=UTF-8
    
    2000
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="te
    Found 2026-01-02 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2026-01-01 22:59

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Wed, 01 Jan 2025 22:59:15 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=ee29678904817f3ff414a09bfa3a25d3; expires=Fri, 02-Jan-2026 22:59:15 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Thu, 01 Jan 2026 22:59:15 GMT
    X-Served-By: gpc008-node1, cache-chi-kigq8000145-CHI, cache-pao-kpao1770065-PAO
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767308355.106566,VS0,VE208
    Vary: Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2026-01-01 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2026-01-01 20:52

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 267990
    pragma: cache
    expires: Fri, 01 Jan 2027 20:52:05 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Thu, 01 Jan 2026 20:52:39 GMT
    Age: 34
    X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-lcy-egml8630038-LCY
    X-Cache: HIT, HIT
    X-Cache-Hits: 6, 1
    X-Timer: S1767300760.800463,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  m
    Found 2026-01-01 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-30 05:31

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Mon, 30 Dec 2024 05:31:19 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=a3d8369a1ea8ad7d7e141c1f1d34509f; expires=Wed, 31-Dec-2025 05:31:19 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 30 Dec 2025 05:31:19 GMT
    X-Served-By: gpc008-node1, cache-chi-klot8100074-CHI, cache-lga21924-LGA
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1767072679.985994,VS0,VE166
    Vary: Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-30 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-30 05:26

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 267990
    pragma: cache
    expires: Wed, 30 Dec 2026 05:26:43 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 30 Dec 2025 05:26:43 GMT
    Age: 0
    X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-yyz4525-YYZ
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1767072404.822464,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: CA
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="al
    Found 2025-12-30 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-23 08:58

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Tue, 22 Dec 2026 10:21:13 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Age: 81462
    Date: Tue, 23 Dec 2025 08:58:56 GMT
    X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230073-FRA
    X-Cache: HIT, HIT
    X-Cache-Hits: 6, 0
    X-Timer: S1766480336.382831,VS0,VE3
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="styleshe
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-23 08:58

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Wed, 23 Dec 2026 08:58:55 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 23 Dec 2025 08:58:56 GMT
    Age: 0
    X-Served-By: cache-chi-kigq8000056-CHI, cache-lcy-egml8630052-LCY
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1766480336.199187,VS0,VE31
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-23 07:24

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Mon, 23 Dec 2024 07:24:32 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=3a2775ecbe008c480f4c633b4d345fb7; expires=Wed, 24-Dec-2025 07:24:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 23 Dec 2025 07:24:32 GMT
    X-Served-By: gpc008-node1, cache-chi-klot8100043-CHI, cache-fra-eddf8230068-FRA
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1766474673.556892,VS0,VE275
    Vary: Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 192.240.173.183:80 · dev.headcovers.com

    2025-12-23 06:15

    HTTP/1.1 301 Moved Permanently
    Date: Tue, 23 Dec 2025 06:15:21 GMT
    Server: Apache
    Pragma: no-cache
    Cache-Control: max-age=0, must-revalidate, no-cache, no-store
    Expires: Mon, 23 Dec 2024 06:15:21 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=494e760ab4fcfc7eba68dfb8cb1f4c23; expires=Wed, 24-Dec-2025 06:15:21 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Location: https://dev.headcovers.com/
    X-Frame-Options: SAMEORIGIN
    Content-Length: 0
    Content-Type: text/html; charset=UTF-8
    
    
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-23 05:18

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Mon, 23 Dec 2024 05:18:44 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=9514864e3e5528886e9829d4757fbcf3; expires=Wed, 24-Dec-2025 05:18:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 23 Dec 2025 05:18:44 GMT
    X-Served-By: gpc008-node1, cache-chi-kigq8000059-CHI, cache-yyz4568-YYZ
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1766467124.397613,VS0,VE169
    Vary: Cookie
    Currency: CA
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-23 05:14

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Wed, 23 Dec 2026 05:12:22 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Tue, 23 Dec 2025 05:14:18 GMT
    Age: 116
    X-Served-By: gpc008-node2, cache-chi-kigq8000179-CHI, cache-lga21949-LGA
    X-Cache: HIT, HIT
    X-Cache-Hits: 6, 1
    X-Timer: S1766466858.244222,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 192.240.173.182:80 · admin.headcovers.com

    2025-12-23 02:38

    HTTP/1.1 301 Moved Permanently
    date: Tue, 23 Dec 2025 02:38:24 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Mon, 23 Dec 2024 02:38:25 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=c239e7cc4d9938f8c58a2fbbb5b08efa; expires=Wed, 24-Dec-2025 02:38:25 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 192.240.173.183:80 · dev.headcovers.com

    2025-12-23 00:04

    HTTP/1.1 301 Moved Permanently
    Date: Tue, 23 Dec 2025 00:04:46 GMT
    Server: Apache
    Pragma: no-cache
    Cache-Control: max-age=0, must-revalidate, no-cache, no-store
    Expires: Mon, 23 Dec 2024 00:04:46 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=17ff9941737d02f4eee99bdd2991fc96; expires=Wed, 24-Dec-2025 00:04:46 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Location: https://dev.headcovers.com/
    X-Frame-Options: SAMEORIGIN
    Content-Length: 0
    Content-Type: text/html; charset=UTF-8
    
    
    Found 2025-12-23 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-22 23:36

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Tue, 22 Dec 2026 23:31:43 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Mon, 22 Dec 2025 23:36:42 GMT
    Age: 298
    X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-rtm-ehrd2290047-RTM
    X-Cache: HIT, HIT
    X-Cache-Hits: 2, 1
    X-Timer: S1766446602.412636,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  
    Found 2025-12-22 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · staging.headcovers.com

    2025-12-22 23:34

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Mon, 21 Dec 2026 10:50:24 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Mon, 22 Dec 2025 23:34:53 GMT
    Age: 132268
    X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230085-FRA
    X-Cache: HIT, HIT
    X-Cache-Hits: 2, 1
    X-Timer: S1766446493.370429,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesh
    Found 2025-12-22 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2025-12-22 16:41

    HTTP/1.1 301 Moved Permanently
    date: Mon, 22 Dec 2025 16:41:37 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Sun, 22 Dec 2024 16:41:37 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=73b538a7c4974fe923543914b7a1dee3; expires=Tue, 23-Dec-2025 16:41:37 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-22 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2025-12-22 15:22

    HTTP/1.1 301 Moved Permanently
    date: Mon, 22 Dec 2025 15:22:42 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Sun, 22 Dec 2024 15:22:42 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=67f83629d068e797ef1f9168aa8ee519; expires=Tue, 23-Dec-2025 15:22:42 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-22 by HttpPlugin
    Create report
  • Open service 192.240.173.183:443 · dev.headcovers.com

    2025-12-22 11:38

    HTTP/1.1 200 OK
    Date: Mon, 22 Dec 2025 11:38:08 GMT
    Server: Apache
    Pragma: cache
    Expires: Tue, 22 Dec 2026 11:38:08 GMT
    Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
    fastly-page-cacheable: YES
    X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
    Fastly-Module-Enabled: 1.2.233
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=97b557fefcb14dade38b5e81a312e8e8; expires=Tue, 23-Dec-2025 11:38:08 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Vary: Accept-Encoding
    X-Frame-Options: SAMEORIGIN
    Transfer-Encoding: chunked
    Content-Type: text/html; charset=UTF-8
    
    2000
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type="te
    Found 2025-12-22 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-21 11:23

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Mon, 21 Dec 2026 10:50:24 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sun, 21 Dec 2025 11:23:24 GMT
    Age: 1980
    X-Served-By: cache-chi-klot8100163-CHI, cache-vie6341-VIE
    X-Cache: HIT, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1766316205.873634,VS0,VE3
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesheet" type=
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-21 11:23

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Mon, 21 Dec 2026 10:50:24 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Age: 1980
    Date: Sun, 21 Dec 2025 11:23:24 GMT
    X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230107-FRA
    X-Cache: HIT, MISS
    X-Cache-Hits: 2, 0
    X-Timer: S1766316205.840422,VS0,VE149
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="styles
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-21 07:39

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Mon, 21 Dec 2026 07:37:11 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sun, 21 Dec 2025 07:39:39 GMT
    Age: 147
    X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-lga21934-LGA
    X-Cache: HIT, HIT
    X-Cache-Hits: 7, 1
    X-Timer: S1766302779.233306,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-21 05:49

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Sat, 21 Dec 2024 05:49:34 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=85a96a3c87973535bf810acdab8b22dd; expires=Mon, 22-Dec-2025 05:49:34 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sun, 21 Dec 2025 05:49:34 GMT
    X-Served-By: gpc008-node1, cache-chi-kigq8000169-CHI, cache-rtm-ehrd2290023-RTM
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1766296174.151354,VS0,VE265
    Vary: Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-21 02:46

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Sat, 21 Dec 2024 02:46:43 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=958930547f20dab1e5f4de483a47847d; expires=Mon, 22-Dec-2025 02:46:43 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sun, 21 Dec 2025 02:46:43 GMT
    X-Served-By: gpc008-node2, cache-chi-kigq8000068-CHI, cache-fra-eddf8230028-FRA
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1766285203.041466,VS0,VE273
    Vary: Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-21 02:10

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Mon, 21 Dec 2026 02:09:42 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Sun, 21 Dec 2025 02:10:58 GMT
    Age: 76
    X-Served-By: gpc008-node2, cache-chi-kigq8000179-CHI, cache-rtm-ehrd2290027-RTM
    X-Cache: HIT, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1766283059.813993,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  m
    Found 2025-12-21 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2025-12-20 17:58

    HTTP/1.1 301 Moved Permanently
    date: Sat, 20 Dec 2025 17:58:16 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Fri, 20 Dec 2024 17:58:16 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=936908952aeae06d635e9dde3841f8c1; expires=Sun, 21-Dec-2025 17:58:16 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-20 by HttpPlugin
    Create report
  • Open service 192.240.173.182:80 · admin.headcovers.com

    2025-12-20 13:40

    HTTP/1.1 301 Moved Permanently
    date: Sat, 20 Dec 2025 13:40:27 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Fri, 20 Dec 2024 13:40:27 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=942c7e88e0fccb325a4bf2a3a77623a4; expires=Sun, 21-Dec-2025 13:40:27 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-20 by HttpPlugin
    Create report
  • Open service 192.240.173.182:443 · admin.headcovers.com

    2025-12-20 10:19

    HTTP/1.1 301 Moved Permanently
    date: Sat, 20 Dec 2025 10:19:04 GMT
    server: Apache
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Fri, 20 Dec 2024 10:19:04 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=792259bc1f273bba08f7fc6057751485; expires=Sun, 21-Dec-2025 10:19:04 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    upgrade: h2
    connection: Upgrade
    location: https://www.headcovers.com/
    x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-length: 0
    content-type: text/html; charset=UTF-8
    x-served-by: gpc008-admin1
    
    
    Found 2025-12-20 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-19 09:59

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Sat, 19 Dec 2026 03:52:13 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 19 Dec 2025 09:59:37 GMT
    Age: 22043
    X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-fra-eddf8230069-FRA
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1766138377.123079,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css
    Found 2025-12-19 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-19 07:03

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Sat, 19 Dec 2026 03:31:44 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 19 Dec 2025 07:03:27 GMT
    Age: 12704
    X-Served-By: cache-chi-kigq8000109-CHI, cache-sin-wsat1880020-SIN
    X-Cache: HIT, HIT
    X-Cache-Hits: 1, 1
    X-Timer: S1766127808.995498,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: SG
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="styleshe
    Found 2025-12-19 by HttpPlugin
    Create report
  • Open service 151.101.65.91:443 · staging.headcovers.com

    2025-12-19 07:03

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 246313
    Pragma: cache
    Expires: Fri, 18 Dec 2026 09:14:56 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    X-Frame-Options: SAMEORIGIN
    Content-Type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 19 Dec 2025 07:03:27 GMT
    Age: 78511
    X-Served-By: cache-chi-kigq8000109-CHI, cache-pao-kpao1770023-PAO
    X-Cache: HIT, HIT
    X-Cache-Hits: 13, 1
    X-Timer: S1766127808.770319,VS0,VE2
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: US
    Strict-Transport-Security: max-age=300
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="NOINDEX,NOFOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
    <link  rel="stylesh
    Found 2025-12-19 by HttpPlugin
    Create report
  • Open service 151.101.129.91:443 · www.headcovers.com

    2025-12-19 03:52

    HTTP/1.1 200 OK
    Connection: close
    Content-Length: 265611
    pragma: cache
    expires: Sat, 19 Dec 2026 03:52:13 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    x-hostname: gpc008-node1.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 19 Dec 2025 03:52:14 GMT
    Age: 0
    X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-fra-eddf8230097-FRA
    X-Cache: MISS, HIT
    X-Cache-Hits: 0, 1
    X-Timer: S1766116334.399252,VS0,VE1
    Cache-Control: no-store, no-cache, must-revalidate, max-age=0
    Vary: Currency,Accept-Encoding,Cookie
    Currency: EU
    Strict-Transport-Security: max-age=31557600
    
     <!doctype html><html lang="en"><head > <meta charset="utf-8"/>
    <meta name="title" content="Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited"/>
    <meta name="description" content="Shop wigs &amp; hats for cancer patients, head scarves, chemo hats &amp; caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
    <meta name="robots" content="INDEX,FOLLOW"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
    <meta name="format-detection" content="telephone=no"/>
    <title>Hats &amp; Wigs for Cancer Patients | Headcovers Unlimited</title>
    <link  rel="stylesheet" type="text/css"  media="print" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/css/print.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
    <link  rel="stylesheet" type="text/css"  media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
    <link  rel="stylesheet" type="text/css"  m
    Found 2025-12-19 by HttpPlugin
    Create report
  • Open service 151.101.1.91:443 · headcovers.com

    2025-12-19 03:48

    HTTP/1.1 301 Moved Permanently
    Connection: close
    Content-Length: 0
    pragma: no-cache
    cache-control: max-age=0, must-revalidate, no-cache, no-store
    expires: Thu, 19 Dec 2024 03:48:42 GMT
    report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    x-content-type-options: nosniff
    x-xss-protection: 1; mode=block
    x-frame-options: SAMEORIGIN
    set-cookie: PHPSESSID=9ce42b86ca0afaa24014f50672f0ff53; expires=Sat, 20-Dec-2025 03:48:42 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
    location: https://www.headcovers.com/
    x-hostname: gpc008-node2.us-midwest-1.nxcli.net
    x-frame-options: SAMEORIGIN
    content-type: text/html; charset=UTF-8
    Accept-Ranges: bytes
    Date: Fri, 19 Dec 2025 03:48:42 GMT
    X-Served-By: gpc008-node2, cache-chi-kigq8000110-CHI, cache-pao-kpao1770038-PAO
    X-Cache: MISS, MISS
    X-Cache-Hits: 0, 0
    X-Timer: S1766116122.422483,VS0,VE242
    Vary: Cookie
    Currency: US
    Strict-Transport-Security: max-age=31557600
    
    
    Found 2025-12-19 by HttpPlugin
    Create report
  • Open service 192.240.173.183:80 · dev.headcovers.com

    2025-12-19 01:41

    HTTP/1.1 301 Moved Permanently
    Date: Fri, 19 Dec 2025 01:41:29 GMT
    Server: Apache
    Pragma: no-cache
    Cache-Control: max-age=0, must-revalidate, no-cache, no-store
    Expires: Thu, 19 Dec 2024 01:41:30 GMT
    Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
    
    
    ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
    X-Content-Type-Options: nosniff
    X-XSS-Protection: 1; mode=block
    X-Frame-Options: SAMEORIGIN
    Set-Cookie: PHPSESSID=6637d8eedbd490f50e95c8dffea6dcad; expires=Sat, 20-Dec-2025 01:41:30 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
    Upgrade: h2
    Connection: Upgrade, close
    Location: https://dev.headcovers.com/
    X-Frame-Options: SAMEORIGIN
    Content-Length: 0
    Content-Type: text/html; charset=UTF-8
    
    
    Found 2025-12-19 by HttpPlugin
    Create report
headcovers.com*.headcovers.com
CN:
headcovers.com
Key:
ECDSA-256
Issuer:
WE1
Not before:
2025-12-25 14:55
Not after:
2026-03-25 15:55
*.headcovers.comheadcovers.com
CN:
*.headcovers.com
Key:
RSA-2048
Issuer:
R13
Not before:
2026-01-04 08:13
Not after:
2026-04-04 08:13
dev.headcovers.com
CN:
dev.headcovers.com
Key:
RSA-2048
Issuer:
R10
Not before:
2025-04-09 06:24
Not after:
2025-07-08 06:24
admin.headcovers.com
CN:
admin.headcovers.com
Key:
RSA-2048
Issuer:
R12
Not before:
2025-11-14 07:45
Not after:
2026-02-12 07:45
*.headcovers.comheadcovers.com
CN:
*.headcovers.com
Key:
RSA-2048
Issuer:
R12
Not before:
2025-11-05 09:07
Not after:
2026-02-03 09:07