cloudflare
tcp/443 tcp/8443
nginx
tcp/80
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2df9b2641df9b2641df9b2641df9b2641df9b2641
GraphQL introspection enabled at /graphql/api Detected: Magento
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3ff05210135362883d0be41ac99e672b290088381
GraphQL introspection enabled at /graphql Types: 389 (by kind: ENUM: 28, INPUT_OBJECT: 86, INTERFACE: 20, OBJECT: 250, SCALAR: 5) Operations: - Query: Query | fields: availableStores, cart, categories, category, categoryList - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart, addProductsToCompareList Directives: deprecated, include, skip (total: 3) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Open service 94.76.223.34:80 · www.leddirect.fr
2026-02-04 19:42
HTTP/1.1 301 Moved Permanently Server: nginx Date: Wed, 04 Feb 2026 19:42:56 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://www.leddirect.fr/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 172.67.145.183:8443 · www.leddirect.fr
2026-01-23 09:06
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 09:06:25 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=791,cfOrigin;dur=696
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9c2622851c088369-SIN
alt-svc: h3=":8443"; ma=86400
Open service 172.67.145.183:443 · www.leddirect.fr
2026-01-23 04:29
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 04:29:15 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9c248c889a3d90e7-FRA
alt-svc: h3=":443"; ma=86400
Open service 172.67.145.183:8443 · www.leddirect.fr
2026-01-09 16:22
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 16:22:24 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9bb545f369a2fc05-FRA
alt-svc: h3=":8443"; ma=86400
Open service 172.67.145.183:443 · www.leddirect.fr
2026-01-09 05:13
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 05:13:11 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9bb171a7f8ba9bfe-FRA
alt-svc: h3=":443"; ma=86400
Open service 172.67.145.183:8443 · www.leddirect.fr
2026-01-02 21:45
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 21:45:50 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=15,cfOrigin;dur=286
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9b7d721a1eacc472-EWR
alt-svc: h3=":8443"; ma=86400
Open service 172.67.145.183:443 · www.leddirect.fr
2026-01-02 11:59
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 11:59:23 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=1000
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9b7a17087c51481a-BOM
alt-svc: h3=":443"; ma=86400
Open service 172.67.145.183:8443 · www.leddirect.fr
2025-12-22 22:36
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 22:36:36 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=389
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9b231953ce6c711a-YYZ
alt-svc: h3=":8443"; ma=86400
Open service 172.67.145.183:443 · www.leddirect.fr
2025-12-22 12:56
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 12:56:40 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"https:\/\/monitor.bigbridgedev.nl\/csp"}]}
content-security-policy-report-only: font-src fonts.gstatic.com v2.zopim.com data: data: 'self' 'unsafe-inline'; form-action www.facebook.com 'self' 'unsafe-inline'; frame-ancestors *.multisafepay.com https://pay.google.com 'self'; frame-src https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com www.youtube.com www.facebook.com v2.zopim.com 'self' 'unsafe-inline'; img-src data: www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com https://www.mollie.com i.ytimg.com www.google.nl www.facebook.com widgets.trustedshops.com www.ledlampendirect.nl v2assets.zopim.com v2assets.zopim.io v2.zopim.com v2.zopim.io data: 'self' 'unsafe-inline'; script-src www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com www.paypalobjects.com https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ *.multisafepay.com https://pay.google.com js.mollie.com chimpstatic.com widgets.trustedshops.com www.dwin1.com v2.zopim.com connect.facebook.net static.zdassets.com ekr.zdassets.com www.facebook.com checkout.buckaroo.nl https://chimpstatic.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src fonts.googleapis.com *.multisafepay.com checkout.buckaroo.nl 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src www.google-analytics.com www.googleadservices.com analytics.google.com www.googletagmanager.com www.paypalobjects.com *.multisafepay.com v2.zopim.com www.paypal.com stats.g.doubleclick.net ekr.zdassets.com widget-mediator.zopim.com wss://widget-mediator.zopim.com v2assets.zopim.io 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri https://monitor.bigbridgedev.nl/csp; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
vary: Accept-Encoding
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
cf-cache-status: DYNAMIC
CF-RAY: 9b1fc7d2acfa8699-AMS
alt-svc: h3=":443"; ma=86400