Apache
tcp/443 tcp/80
cloudflare
tcp/443 tcp/80 tcp/8443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef85630091207
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2
GraphQL introspection enabled at /graphql/api
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade
GraphQL introspection enabled at /graphql/api Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e20874f103d9761101df2a026f57618799dbc642a9
GraphQL introspection enabled at /graphql/api Types: 685 (by kind: ENUM: 48, INPUT_OBJECT: 165, INTERFACE: 29, OBJECT: 433, SCALAR: 5, UNION: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef85630091207
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade
GraphQL introspection enabled at /graphql/api Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e24c17cb26c8d300568a7a1e84657ef856cc5069e0
GraphQL introspection enabled at /graphql/api Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade
GraphQL introspection enabled at /graphql/api Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2ea63ffbeb9dc026ebfb004bcab05cc6ef391fade
GraphQL introspection enabled at /graphql/api Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd637723ac6b1a
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3a7e054abcd6323e97229fdb702bd63775f33ccbf
GraphQL introspection enabled at /graphql Types: 432 (by kind: ENUM: 30, INPUT_OBJECT: 101, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3fd33e5c9d76bc76b68f9231d2dcc9481822e7681
GraphQL introspection enabled at /graphql Types: 427 (by kind: ENUM: 28, INPUT_OBJECT: 98, INTERFACE: 21, OBJECT: 275, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3f3e379d62bdaea06e13682b4b48948de51f15d2e
GraphQL introspection enabled at /graphql Types: 685 (by kind: ENUM: 48, INPUT_OBJECT: 165, INTERFACE: 29, OBJECT: 433, SCALAR: 5, UNION: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addGiftRegistryRegistrants Directives: deprecated, include, skip (total: 3)
Open service 104.20.23.190:80 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 301 Moved Permanently Date: Sat, 10 Jan 2026 05:35:21 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9bb9cf7fdb484dc7-FRA
Open service 2606:4700:10::6814:17be:8443 · www.headcovers.com
2026-01-10 05:35
Open service 2606:4700:10::ac42:944e:8443 · www.headcovers.com
2026-01-10 05:35
Open service 2606:4700:10::6814:17be:443 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 05:35:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
pragma: cache
expires: Sun, 10 Jan 2027 05:33:12 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Open service 2606:4700:10::6814:17be:80 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 301 Moved Permanently Date: Sat, 10 Jan 2026 05:35:21 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9bb9cf7f1b044271-EWR
Open service 104.20.23.190:8443 · www.headcovers.com
2026-01-10 05:35
Open service 2606:4700:10::ac42:944e:443 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 05:35:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
pragma: cache
expires: Sun, 10 Jan 2027 05:35:19 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Open service 2606:4700:10::ac42:944e:80 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 301 Moved Permanently Date: Sat, 10 Jan 2026 05:35:21 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9bb9cf7f0b958c73-EWR
Open service 104.20.23.190:443 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 05:35:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
pragma: cache
expires: Sun, 10 Jan 2027 05:35:19 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Open service 172.66.148.78:8443 · www.headcovers.com
2026-01-10 05:35
Open service 172.66.148.78:80 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 301 Moved Permanently Date: Sat, 10 Jan 2026 05:35:21 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9bb9cf7eed5241f9-EWR
Open service 172.66.148.78:443 · www.headcovers.com
2026-01-10 05:35
HTTP/1.1 200 OK
Date: Sat, 10 Jan 2026 05:35:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
pragma: cache
expires: Sun, 10 Jan 2027 05:33:54 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Open service 151.101.1.91:443 · staging.headcovers.com
2026-01-10 02:12
HTTP/1.1 200 OK
Connection: close
Content-Length: 223433
Pragma: cache
Expires: Sat, 09 Jan 2027 20:28:29 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sat, 10 Jan 2026 02:12:03 GMT
Age: 20613
X-Served-By: cache-chi-kigq8000109-CHI, cache-yyz4563-YYZ
X-Cache: HIT, HIT
X-Cache-Hits: 1, 1
X-Timer: S1768011123.398668,VS0,VE3
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: CA
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767979939/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/versio
Open service 192.240.173.183:443 · dev.headcovers.com
2026-01-09 23:15
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 23:15:40 GMT
Server: Apache
Pragma: cache
Expires: Sat, 09 Jan 2027 23:15:40 GMT
Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
fastly-page-cacheable: YES
X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
Fastly-Module-Enabled: 1.2.233
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=bf84400639a1f5711f303dbaf9b594e6; expires=Sat, 10-Jan-2026 23:15:40 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
2000
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767711793/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="te
Open service 192.240.173.182:80 · admin.headcovers.com
2026-01-09 20:00
HTTP/1.1 301 Moved Permanently
date: Fri, 09 Jan 2026 20:00:32 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 09 Jan 2025 20:00:32 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=c34b1ac4bbd9db520211cf46e4766cde; expires=Sat, 10-Jan-2026 20:00:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:80 · admin.headcovers.com
2026-01-09 20:00
HTTP/1.1 301 Moved Permanently
date: Fri, 09 Jan 2026 20:00:32 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 09 Jan 2025 20:00:32 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=a5f78930920cd89f12d1b6383aef4a86; expires=Sat, 10-Jan-2026 20:00:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 151.101.129.91:443 · www.headcovers.com
2026-01-09 17:21
HTTP/1.1 200 OK
Connection: close
Content-Length: 267990
pragma: cache
expires: Sat, 09 Jan 2027 17:21:18 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Age: 42
Date: Fri, 09 Jan 2026 17:22:01 GMT
X-Served-By: gpc008-node2, cache-chi-klot8100151-CHI, cache-pao-kpao1770068-PAO
X-Cache: HIT, MISS
X-Cache-Hits: 9, 0
X-Timer: S1767979321.017367,VS0,VE76
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767952439/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css"
Open service 192.240.173.182:443 · admin.headcovers.com
2026-01-09 17:05
HTTP/1.1 301 Moved Permanently
date: Fri, 09 Jan 2026 17:05:44 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 09 Jan 2025 17:05:44 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=5d3ace61e59a0103e72469e94852917c; expires=Sat, 10-Jan-2026 17:05:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 151.101.1.91:443 · headcovers.com
2026-01-09 16:50
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 09 Jan 2025 16:50:44 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=3b53ba26fdcb6698196863137619acd0; expires=Sat, 10-Jan-2026 16:50:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 09 Jan 2026 16:50:44 GMT
X-Served-By: gpc008-node2, cache-chi-kigq8000145-CHI, cache-fra-eddf8230072-FRA
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767977444.025385,VS0,VE269
Vary: Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
Open service 151.101.65.91:443 · staging.headcovers.com
2026-01-09 15:12
HTTP/1.1 200 OK
Connection: close
Content-Length: 223433
Pragma: cache
Expires: Sat, 09 Jan 2027 15:12:48 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Age: 0
Date: Fri, 09 Jan 2026 15:12:49 GMT
X-Served-By: cache-chi-kigq8000109-CHI, cache-fra-eddf8230055-FRA
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767971568.393366,VS0,VE661
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/stati
Open service 151.101.129.91:443 · www.headcovers.com
2026-01-08 20:52
HTTP/1.1 200 OK
Connection: close
Content-Length: 267990
pragma: cache
expires: Fri, 08 Jan 2027 20:52:10 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Thu, 08 Jan 2026 20:52:27 GMT
Age: 17
X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-pao-kpao1770072-PAO
X-Cache: HIT, HIT
X-Cache-Hits: 2, 1
X-Timer: S1767905547.397481,VS0,VE48
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767862416/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css"
Open service 151.101.1.91:443 · headcovers.com
2026-01-08 20:42
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Wed, 08 Jan 2025 20:42:12 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=1d0fd18196d341bc416d68261de7b37c; expires=Fri, 09-Jan-2026 20:42:12 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Thu, 08 Jan 2026 20:42:12 GMT
X-Served-By: gpc008-node2, cache-chi-kigq8000089-CHI, cache-sjc10023-SJC
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767904932.114685,VS0,VE193
Vary: Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
Open service 151.101.205.91:443 · staging.headcovers.com
2026-01-08 19:02
HTTP/1.1 200 OK
Connection: close
Content-Length: 223433
Pragma: cache
Expires: Fri, 08 Jan 2027 09:12:11 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Thu, 08 Jan 2026 19:02:03 GMT
Age: 35392
X-Served-By: cache-chi-kigq8000109-CHI, cache-rtm-ehrd2290052-RTM
X-Cache: HIT, HIT
X-Cache-Hits: 9, 1
X-Timer: S1767898923.078597,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/stati
Open service 151.101.129.91:80 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Retry-After: 0 Location: https://staging.headcovers.com/ Accept-Ranges: bytes Date: Wed, 07 Jan 2026 08:29:20 GMT X-Served-By: cache-sjc10034-SJC X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767774561.613687,VS0,VE1 Vary: Currency: US Strict-Transport-Security: max-age=300
Open service 151.101.129.91:443 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Thu, 07 Jan 2027 08:29:18 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Wed, 07 Jan 2026 08:29:21 GMT
Age: 2
X-Served-By: cache-chi-kigq8000109-CHI, cache-lga21960-LGA
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1767774561.197161,VS0,VE86
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version
Open service 151.101.193.91:80 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Retry-After: 0 Location: https://staging.headcovers.com/ Accept-Ranges: bytes Date: Wed, 07 Jan 2026 08:29:20 GMT X-Served-By: cache-sin-wsss1830067-SIN X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767774561.569293,VS0,VE0 Vary: Currency: SG Strict-Transport-Security: max-age=300
Open service 151.101.1.91:443 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Thu, 07 Jan 2027 08:29:18 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Wed, 07 Jan 2026 08:29:21 GMT
Age: 2
X-Served-By: cache-chi-kigq8000109-CHI, cache-fra-eddf8230066-FRA
X-Cache: HIT, HIT
X-Cache-Hits: 1, 1
X-Timer: S1767774561.243613,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/ve
Open service 151.101.1.91:80 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Retry-After: 0 Location: https://staging.headcovers.com/ Accept-Ranges: bytes Date: Wed, 07 Jan 2026 08:29:20 GMT X-Served-By: cache-bom-vanm7210045-BOM X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767774561.548210,VS0,VE0 Vary: Currency: US Strict-Transport-Security: max-age=300
Open service 151.101.65.91:80 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Retry-After: 0 Location: https://staging.headcovers.com/ Accept-Ranges: bytes Date: Wed, 07 Jan 2026 08:29:20 GMT X-Served-By: cache-sin-wsat1880088-SIN X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767774560.430424,VS0,VE0 Vary: Currency: SG Strict-Transport-Security: max-age=300
Open service 151.101.193.91:443 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Thu, 07 Jan 2027 08:29:18 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Wed, 07 Jan 2026 08:29:21 GMT
Age: 2
X-Served-By: cache-chi-kigq8000109-CHI, cache-rtm-ehrd2290043-RTM
X-Cache: MISS, HIT
X-Cache-Hits: 1, 1
X-Timer: S1767774561.234196,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/v
Open service 151.101.65.91:443 · staging.headcovers.com
2026-01-07 08:29
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Thu, 07 Jan 2027 08:29:18 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Wed, 07 Jan 2026 08:29:21 GMT
Age: 2
X-Served-By: cache-chi-kigq8000109-CHI, cache-lga21985-LGA
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1767774561.192431,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767622629/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1
Open service 172.66.148.78:8443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e688c965037-SIN
Open service 172.66.148.78:443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e6748fa086a-YYZ
Open service 2606:4700:10::6814:17be:443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e674825f900-SIN
Open service 104.20.23.190:443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e670e169b49-FRA
Open service 2606:4700:10::6814:17be:80 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e66c95ca452-SIN
Open service 104.20.23.190:80 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e66afd0c16b-LHR
Open service 172.66.148.78:80 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:14 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e669b69ef2b-LHR
Open service 2606:4700:10::ac42:944e:8443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:13 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e666a8d0d85-EWR
Open service 104.20.23.190:8443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:13 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e66482546d0-LHR
Open service 2606:4700:10::6814:17be:8443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:13 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e661b76c341-EWR
Open service 2606:4700:10::ac42:944e:443 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:13 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e65e99c4ada-EWR
Open service 2606:4700:10::ac42:944e:80 · headcovers.com
2026-01-04 09:13
HTTP/1.1 301 Moved Permanently Date: Sun, 04 Jan 2026 09:13:13 GMT Content-Length: 0 Connection: close Location: https://www.headcovers.com/ Server: cloudflare CF-RAY: 9b899e65ce091d0c-FRA
Open service 151.101.1.91:443 · headcovers.com
2026-01-02 23:49
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 02 Jan 2025 23:49:53 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=621656034e38f69501d139e0728d53ec; expires=Sat, 03-Jan-2026 23:49:53 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 02 Jan 2026 23:49:53 GMT
X-Served-By: gpc008-node2, cache-chi-kigq8000166-CHI, cache-yyz4552-YYZ
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767397793.350719,VS0,VE193
Vary: Cookie
Currency: CA
Strict-Transport-Security: max-age=31557600
Open service 192.240.173.183:80 · dev.headcovers.com
2026-01-02 21:03
HTTP/1.1 301 Moved Permanently
Date: Fri, 02 Jan 2026 21:03:07 GMT
Server: Apache
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Thu, 02 Jan 2025 21:03:07 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=f681d3025c1958427610481b93aecc65; expires=Sat, 03-Jan-2026 21:03:07 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Location: https://dev.headcovers.com/
X-Frame-Options: SAMEORIGIN
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Open service 192.240.173.182:443 · admin.headcovers.com
2026-01-02 20:49
HTTP/1.1 301 Moved Permanently
date: Fri, 02 Jan 2026 20:49:40 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 02 Jan 2025 20:49:40 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=6f160ab501906ede9f63af6b24e3c638; expires=Sat, 03-Jan-2026 20:49:40 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:443 · admin.headcovers.com
2026-01-02 19:51
HTTP/1.1 301 Moved Permanently
date: Fri, 02 Jan 2026 19:51:31 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 02 Jan 2025 19:51:31 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=390ea31537e946df3992677c9409d8e6; expires=Sat, 03-Jan-2026 19:51:31 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:80 · admin.headcovers.com
2026-01-02 17:58
HTTP/1.1 301 Moved Permanently
date: Fri, 02 Jan 2026 17:58:54 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 02 Jan 2025 17:58:54 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=9d8772ac9c9becbe1a1a3b5f6cb89efd; expires=Sat, 03-Jan-2026 17:58:54 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 151.101.65.91:443 · staging.headcovers.com
2026-01-02 17:41
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Sat, 02 Jan 2027 17:41:48 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 02 Jan 2026 17:41:48 GMT
Age: 0
X-Served-By: cache-chi-kigq8000137-CHI, cache-rtm-ehrd2290056-RTM
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1767375709.600981,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/v
Open service 151.101.65.91:443 · staging.headcovers.com
2026-01-02 17:41
HTTP/1.1 200 OK
Connection: close
Content-Length: 224110
Pragma: cache
Expires: Sat, 02 Jan 2027 17:41:48 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
zon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com *.searchspring.io *.searchspring.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ https://beacon.searchspring.io/beacon *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.searchspring.io *.searchspring.net https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 02 Jan 2026 17:41:48 GMT
Age: 0
X-Served-By: cache-chi-kigq8000137-CHI, cache-rtm-ehrd2290028-RTM
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1767375709.598087,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1767285977/frontend/headcovers/luma/en_US/Magento_Theme/css/cms_homepage.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/v
Open service 151.101.129.91:443 · www.headcovers.com
2026-01-02 17:28
HTTP/1.1 200 OK
Connection: close
Content-Length: 267990
pragma: cache
expires: Sat, 02 Jan 2027 17:27:09 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 02 Jan 2026 17:28:00 GMT
Age: 51
X-Served-By: gpc008-node2, cache-chi-klot8100151-CHI, cache-bom-vanm7210028-BOM
X-Cache: HIT, HIT
X-Cache-Hits: 4, 1
X-Timer: S1767374881.749036,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" m
Open service 192.240.173.183:443 · dev.headcovers.com
2026-01-02 12:53
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 12:53:18 GMT
Server: Apache
Pragma: cache
Expires: Sat, 02 Jan 2027 12:53:19 GMT
Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
fastly-page-cacheable: YES
X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c114 cp_114 c291 cp_291 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
Fastly-Module-Enabled: 1.2.233
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=a44ff15fd74989ff7c198bd253abee5f; expires=Sat, 03-Jan-2026 12:53:18 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
2000
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="te
Open service 192.240.173.183:443 · dev.headcovers.com
2026-01-02 10:19
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 10:19:20 GMT
Server: Apache
Pragma: cache
Expires: Sat, 02 Jan 2027 10:19:21 GMT
Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
fastly-page-cacheable: YES
X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
Fastly-Module-Enabled: 1.2.233
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=a9fc7b2320b8cc60f1fc952d0fb58f7f; expires=Sat, 03-Jan-2026 10:19:20 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
2000
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1767178589/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="te
Open service 151.101.1.91:443 · headcovers.com
2026-01-01 22:59
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Wed, 01 Jan 2025 22:59:15 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=ee29678904817f3ff414a09bfa3a25d3; expires=Fri, 02-Jan-2026 22:59:15 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Thu, 01 Jan 2026 22:59:15 GMT
X-Served-By: gpc008-node1, cache-chi-kigq8000145-CHI, cache-pao-kpao1770065-PAO
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767308355.106566,VS0,VE208
Vary: Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:443 · www.headcovers.com
2026-01-01 20:52
HTTP/1.1 200 OK
Connection: close
Content-Length: 267990
pragma: cache
expires: Fri, 01 Jan 2027 20:52:05 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Thu, 01 Jan 2026 20:52:39 GMT
Age: 34
X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-lcy-egml8630038-LCY
X-Cache: HIT, HIT
X-Cache-Hits: 6, 1
X-Timer: S1767300760.800463,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" m
Open service 151.101.1.91:443 · headcovers.com
2025-12-30 05:31
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Mon, 30 Dec 2024 05:31:19 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=a3d8369a1ea8ad7d7e141c1f1d34509f; expires=Wed, 31-Dec-2025 05:31:19 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 30 Dec 2025 05:31:19 GMT
X-Served-By: gpc008-node1, cache-chi-klot8100074-CHI, cache-lga21924-LGA
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1767072679.985994,VS0,VE166
Vary: Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-30 05:26
HTTP/1.1 200 OK
Connection: close
Content-Length: 267990
pragma: cache
expires: Wed, 30 Dec 2026 05:26:43 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 30 Dec 2025 05:26:43 GMT
Age: 0
X-Served-By: gpc008-node1, cache-chi-klot8100151-CHI, cache-yyz4525-YYZ
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1767072404.822464,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: CA
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1767005081/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="al
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-23 08:58
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Tue, 22 Dec 2026 10:21:13 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Age: 81462
Date: Tue, 23 Dec 2025 08:58:56 GMT
X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230073-FRA
X-Cache: HIT, HIT
X-Cache-Hits: 6, 0
X-Timer: S1766480336.382831,VS0,VE3
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="styleshe
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-23 08:58
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Wed, 23 Dec 2026 08:58:55 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 23 Dec 2025 08:58:56 GMT
Age: 0
X-Served-By: cache-chi-kigq8000056-CHI, cache-lcy-egml8630052-LCY
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1766480336.199187,VS0,VE31
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet
Open service 151.101.1.91:443 · headcovers.com
2025-12-23 07:24
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Mon, 23 Dec 2024 07:24:32 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=3a2775ecbe008c480f4c633b4d345fb7; expires=Wed, 24-Dec-2025 07:24:32 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 23 Dec 2025 07:24:32 GMT
X-Served-By: gpc008-node1, cache-chi-klot8100043-CHI, cache-fra-eddf8230068-FRA
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1766474673.556892,VS0,VE275
Vary: Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
Open service 192.240.173.183:80 · dev.headcovers.com
2025-12-23 06:15
HTTP/1.1 301 Moved Permanently
Date: Tue, 23 Dec 2025 06:15:21 GMT
Server: Apache
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Mon, 23 Dec 2024 06:15:21 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=494e760ab4fcfc7eba68dfb8cb1f4c23; expires=Wed, 24-Dec-2025 06:15:21 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Location: https://dev.headcovers.com/
X-Frame-Options: SAMEORIGIN
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Open service 151.101.1.91:443 · headcovers.com
2025-12-23 05:18
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Mon, 23 Dec 2024 05:18:44 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=9514864e3e5528886e9829d4757fbcf3; expires=Wed, 24-Dec-2025 05:18:44 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 23 Dec 2025 05:18:44 GMT
X-Served-By: gpc008-node1, cache-chi-kigq8000059-CHI, cache-yyz4568-YYZ
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1766467124.397613,VS0,VE169
Vary: Cookie
Currency: CA
Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-23 05:14
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Wed, 23 Dec 2026 05:12:22 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Tue, 23 Dec 2025 05:14:18 GMT
Age: 116
X-Served-By: gpc008-node2, cache-chi-kigq8000179-CHI, cache-lga21949-LGA
X-Cache: HIT, HIT
X-Cache-Hits: 6, 1
X-Timer: S1766466858.244222,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="
Open service 192.240.173.182:80 · admin.headcovers.com
2025-12-23 02:38
HTTP/1.1 301 Moved Permanently
date: Tue, 23 Dec 2025 02:38:24 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Mon, 23 Dec 2024 02:38:25 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=c239e7cc4d9938f8c58a2fbbb5b08efa; expires=Wed, 24-Dec-2025 02:38:25 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.183:80 · dev.headcovers.com
2025-12-23 00:04
HTTP/1.1 301 Moved Permanently
Date: Tue, 23 Dec 2025 00:04:46 GMT
Server: Apache
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Mon, 23 Dec 2024 00:04:46 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=17ff9941737d02f4eee99bdd2991fc96; expires=Wed, 24-Dec-2025 00:04:46 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Location: https://dev.headcovers.com/
X-Frame-Options: SAMEORIGIN
Content-Length: 0
Content-Type: text/html; charset=UTF-8
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-22 23:36
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Tue, 22 Dec 2026 23:31:43 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Mon, 22 Dec 2025 23:36:42 GMT
Age: 298
X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-rtm-ehrd2290047-RTM
X-Cache: HIT, HIT
X-Cache-Hits: 2, 1
X-Timer: S1766446602.412636,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css"
Open service 151.101.1.91:443 · staging.headcovers.com
2025-12-22 23:34
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Mon, 21 Dec 2026 10:50:24 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Mon, 22 Dec 2025 23:34:53 GMT
Age: 132268
X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230085-FRA
X-Cache: HIT, HIT
X-Cache-Hits: 2, 1
X-Timer: S1766446493.370429,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesh
Open service 192.240.173.182:443 · admin.headcovers.com
2025-12-22 16:41
HTTP/1.1 301 Moved Permanently
date: Mon, 22 Dec 2025 16:41:37 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Sun, 22 Dec 2024 16:41:37 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=73b538a7c4974fe923543914b7a1dee3; expires=Tue, 23-Dec-2025 16:41:37 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:443 · admin.headcovers.com
2025-12-22 15:22
HTTP/1.1 301 Moved Permanently
date: Mon, 22 Dec 2025 15:22:42 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Sun, 22 Dec 2024 15:22:42 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=67f83629d068e797ef1f9168aa8ee519; expires=Tue, 23-Dec-2025 15:22:42 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.183:443 · dev.headcovers.com
2025-12-22 11:38
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 11:38:08 GMT
Server: Apache
Pragma: cache
Expires: Tue, 22 Dec 2026 11:38:08 GMT
Cache-Control: max-age=31536000, public, s-maxage=31536000, stale-if-error=86400, stale-while-revalidate=86400
fastly-page-cacheable: YES
X-Magento-Tags: store cb cb_pre-header-custom-links cb_footer_terms cb_footer_links_mobile_new cb_footer-our-story-follow-us-new cb_footer_links_new cb_mobile-top-menu-content cb_desktop-top-menu-content mp_smtp_script cb_black_friday_block cpg_2 c76 cp_76 c109 cp_109 c123 cp_123 c291 cp_291 c114 cp_114 c143 cp_143 testimonial testimonial_282 testimonial_281 testimonial_280 testimonial_279 testimonial_278 testimonial_277 testimonial_276
Fastly-Module-Enabled: 1.2.233
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=97b557fefcb14dade38b5e81a312e8e8; expires=Tue, 23-Dec-2025 11:38:08 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; secure; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
2000
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://dev.headcovers.com/static/version1765987411/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type="te
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-21 11:23
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Mon, 21 Dec 2026 10:50:24 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sun, 21 Dec 2025 11:23:24 GMT
Age: 1980
X-Served-By: cache-chi-klot8100163-CHI, cache-vie6341-VIE
X-Cache: HIT, HIT
X-Cache-Hits: 1, 1
X-Timer: S1766316205.873634,VS0,VE3
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesheet" type=
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-21 11:23
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Mon, 21 Dec 2026 10:50:24 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Age: 1980
Date: Sun, 21 Dec 2025 11:23:24 GMT
X-Served-By: cache-chi-klot8100163-CHI, cache-fra-eddf8230107-FRA
X-Cache: HIT, MISS
X-Cache-Hits: 2, 0
X-Timer: S1766316205.840422,VS0,VE149
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1766161214/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="styles
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-21 07:39
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Mon, 21 Dec 2026 07:37:11 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sun, 21 Dec 2025 07:39:39 GMT
Age: 147
X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-lga21934-LGA
X-Cache: HIT, HIT
X-Cache-Hits: 7, 1
X-Timer: S1766302779.233306,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="
Open service 151.101.1.91:443 · headcovers.com
2025-12-21 05:49
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Sat, 21 Dec 2024 05:49:34 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=85a96a3c87973535bf810acdab8b22dd; expires=Mon, 22-Dec-2025 05:49:34 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sun, 21 Dec 2025 05:49:34 GMT
X-Served-By: gpc008-node1, cache-chi-kigq8000169-CHI, cache-rtm-ehrd2290023-RTM
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1766296174.151354,VS0,VE265
Vary: Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
Open service 151.101.1.91:443 · headcovers.com
2025-12-21 02:46
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Sat, 21 Dec 2024 02:46:43 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=958930547f20dab1e5f4de483a47847d; expires=Mon, 22-Dec-2025 02:46:43 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sun, 21 Dec 2025 02:46:43 GMT
X-Served-By: gpc008-node2, cache-chi-kigq8000068-CHI, cache-fra-eddf8230028-FRA
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1766285203.041466,VS0,VE273
Vary: Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-21 02:10
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Mon, 21 Dec 2026 02:09:42 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Sun, 21 Dec 2025 02:10:58 GMT
Age: 76
X-Served-By: gpc008-node2, cache-chi-kigq8000179-CHI, cache-rtm-ehrd2290027-RTM
X-Cache: HIT, HIT
X-Cache-Hits: 1, 1
X-Timer: S1766283059.813993,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766163517/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" m
Open service 192.240.173.182:443 · admin.headcovers.com
2025-12-20 17:58
HTTP/1.1 301 Moved Permanently
date: Sat, 20 Dec 2025 17:58:16 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Fri, 20 Dec 2024 17:58:16 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=936908952aeae06d635e9dde3841f8c1; expires=Sun, 21-Dec-2025 17:58:16 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:80 · admin.headcovers.com
2025-12-20 13:40
HTTP/1.1 301 Moved Permanently
date: Sat, 20 Dec 2025 13:40:27 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Fri, 20 Dec 2024 13:40:27 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=942c7e88e0fccb325a4bf2a3a77623a4; expires=Sun, 21-Dec-2025 13:40:27 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 192.240.173.182:443 · admin.headcovers.com
2025-12-20 10:19
HTTP/1.1 301 Moved Permanently
date: Sat, 20 Dec 2025 10:19:04 GMT
server: Apache
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Fri, 20 Dec 2024 10:19:04 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=792259bc1f273bba08f7fc6057751485; expires=Sun, 21-Dec-2025 10:19:04 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
upgrade: h2
connection: Upgrade
location: https://www.headcovers.com/
x-hostname: gpc008-admin1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-length: 0
content-type: text/html; charset=UTF-8
x-served-by: gpc008-admin1
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-19 09:59
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Sat, 19 Dec 2026 03:52:13 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 19 Dec 2025 09:59:37 GMT
Age: 22043
X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-fra-eddf8230069-FRA
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1766138377.123079,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-19 07:03
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Sat, 19 Dec 2026 03:31:44 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 19 Dec 2025 07:03:27 GMT
Age: 12704
X-Served-By: cache-chi-kigq8000109-CHI, cache-sin-wsat1880020-SIN
X-Cache: HIT, HIT
X-Cache-Hits: 1, 1
X-Timer: S1766127808.995498,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: SG
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="styleshe
Open service 151.101.65.91:443 · staging.headcovers.com
2025-12-19 07:03
HTTP/1.1 200 OK
Connection: close
Content-Length: 246313
Pragma: cache
Expires: Fri, 18 Dec 2026 09:14:56 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
*.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://fw-cdn.com https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Frame-Options: SAMEORIGIN
Content-Type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 19 Dec 2025 07:03:27 GMT
Age: 78511
X-Served-By: cache-chi-kigq8000109-CHI, cache-pao-kpao1770023-PAO
X-Cache: HIT, HIT
X-Cache-Hits: 13, 1
X-Timer: S1766127808.770319,VS0,VE2
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: US
Strict-Transport-Security: max-age=300
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="NOINDEX,NOFOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://staging.headcovers.com/static/version1765557195/frontend/headcovers/luma/en_US/css/styles-m-hp.min.css" />
<link rel="stylesh
Open service 151.101.129.91:443 · www.headcovers.com
2025-12-19 03:52
HTTP/1.1 200 OK
Connection: close
Content-Length: 265611
pragma: cache
expires: Sat, 19 Dec 2026 03:52:13 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
Page title: Hats & Wigs for Cancer Patients | Headcovers Unlimited
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com https://js.klevu.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
x-hostname: gpc008-node1.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 19 Dec 2025 03:52:14 GMT
Age: 0
X-Served-By: gpc008-node1, cache-chi-kigq8000179-CHI, cache-fra-eddf8230097-FRA
X-Cache: MISS, HIT
X-Cache-Hits: 0, 1
X-Timer: S1766116334.399252,VS0,VE1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Vary: Currency,Accept-Encoding,Cookie
Currency: EU
Strict-Transport-Security: max-age=31557600
<!doctype html><html lang="en"><head > <meta charset="utf-8"/>
<meta name="title" content="Hats & Wigs for Cancer Patients | Headcovers Unlimited"/>
<meta name="description" content="Shop wigs & hats for cancer patients, head scarves, chemo hats & caps, hair pieces for thinning hair, eyebrows and head coverings for hair loss."/>
<meta name="robots" content="INDEX,FOLLOW"/>
<meta name="viewport" content="width=device-width, initial-scale=1, maximum-scale=1.0, user-scalable=0"/>
<meta name="format-detection" content="telephone=no"/>
<title>Hats & Wigs for Cancer Patients | Headcovers Unlimited</title>
<link rel="stylesheet" type="text/css" media="print" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/css/print.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Magento_Theme/css/common.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-theme-earth.min.css" />
<link rel="stylesheet" type="text/css" media="all" href="https://www.headcovers.com/static/version1766053393/frontend/headcovers/luma/en_US/Klevu_Frontend/css/klevu-mini-search.min.css" />
<link rel="stylesheet" type="text/css" m
Open service 151.101.1.91:443 · headcovers.com
2025-12-19 03:48
HTTP/1.1 301 Moved Permanently
Connection: close
Content-Length: 0
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 19 Dec 2024 03:48:42 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
set-cookie: PHPSESSID=9ce42b86ca0afaa24014f50672f0ff53; expires=Sat, 20-Dec-2025 03:48:42 GMT; Max-Age=86400; path=/; domain=www.headcovers.com; secure; HttpOnly; SameSite=Lax
location: https://www.headcovers.com/
x-hostname: gpc008-node2.us-midwest-1.nxcli.net
x-frame-options: SAMEORIGIN
content-type: text/html; charset=UTF-8
Accept-Ranges: bytes
Date: Fri, 19 Dec 2025 03:48:42 GMT
X-Served-By: gpc008-node2, cache-chi-kigq8000110-CHI, cache-pao-kpao1770038-PAO
X-Cache: MISS, MISS
X-Cache-Hits: 0, 0
X-Timer: S1766116122.422483,VS0,VE242
Vary: Cookie
Currency: US
Strict-Transport-Security: max-age=31557600
Open service 192.240.173.183:80 · dev.headcovers.com
2025-12-19 01:41
HTTP/1.1 301 Moved Permanently
Date: Fri, 19 Dec 2025 01:41:29 GMT
Server: Apache
Pragma: no-cache
Cache-Control: max-age=0, must-revalidate, no-cache, no-store
Expires: Thu, 19 Dec 2024 01:41:30 GMT
Report-To: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/www.headcovers.com"}]}
ipe.network *.stripecdn.com *.amazon.com *.link.com *.cookie-script.com *.userway.org *.bing.com *.hotjar.com *.shopperapproved.com *.freshchat.com *.instagram.com *.clarity.ms *.kaltura.com *.trust-guard.com https://*.online-metrix.net *.googlesyndication.com *.googletagmanager.com *.doubleclick.net https://cdn-scripts.signifyd.com https://imgs.signifyd.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com *.yotpo.com *.googleapis.com *.certcapture.com dhv2ziothpgrr.cloudfront.net https://static.klaviyo.com *.klevu.com *.ksearchnet.com *.stripe.network *.stripecdn.com *.amazon.com *.userway.org *.freshchat.com *.hotjar.com *.shopperapproved.com *.googletagmanager.com 'self' 'unsafe-inline'; object-src 'none'; media-src *.adobe.com blob: data: *.kaltura.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.yotpo.com *.certcapture.com www.facebook.com connect.facebook.net graph.facebook.com business.facebook.com dhv2ziothpgrr.cloudfront.net *.smsbump.com 7kgd3hs1oh.execute-api.us-east-1.amazonaws.com https://static.klaviyo.com https://static-forms.klaviyo.com https://fast.a.klaviyo.com https://static-tracking.klaviyo.com/ https://a.klaviyo.com/ https://telemetrics.klaviyo.com/ *.klevu.com *.ksearchnet.com *.stripe.com *.link.com *.amazon.com *.userway.org *.doubleclick.net *.bing.com *.hotjar.com wss://*.hotjar.com *.hotjar.io *.googlesyndication.com *.clarity.ms *.googleapis.com *.kaltura.com *.trust-guard.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com https://imgs.signifyd.com 'self' 'unsafe-inline'; child-src *.certcapture.com http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://www.headcovers.com; report-to report-endpoint;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Set-Cookie: PHPSESSID=6637d8eedbd490f50e95c8dffea6dcad; expires=Sat, 20-Dec-2025 01:41:30 GMT; Max-Age=86400; path=/; domain=dev.headcovers.com; HttpOnly; SameSite=Lax
Upgrade: h2
Connection: Upgrade, close
Location: https://dev.headcovers.com/
X-Frame-Options: SAMEORIGIN
Content-Length: 0
Content-Type: text/html; charset=UTF-8