HTTP/1.1 200 OK
x-xss-protection: 1; mode=block
x-content-type-options: nosniff
Vary: User-Agent, Accept-Encoding
x-ua-compatible: IE=edge
expect-ct: max-age=86400, report-uri="https://www.pinterest.com/_/_/expect_ct_report/"
reporting-endpoints: coop-endpoint="https://www.pinterest.com/_/_/coop_report/", coep-endpoint="https://www.pinterest.com/_/_/coep_report/"
cross-origin-opener-policy-report-only: same-origin; report-to="coop-endpoint"
cross-origin-embedder-policy-report-only: require-corp; report-to="coep-endpoint"
p3p: CP="This is not a P3P policy. See https://www.pinterest.com/_/_/help/articles/pinterest-and-p3p for more info."
Content-Security-Policy: default-src 'self' blob: s.pinimg.com; style-src 'self' 'unsafe-inline' blob: data: *.pinimg.com *.pinterest.com accounts.google.com fonts.googleapis.com *.adyen.com *.adyenpayments.com; font-src 'self' data: s.pinimg.com fonts.gstatic.com fonts.googleapis.com use.typekit.net; img-src * data: blob:; script-src 'nonce-3153cb5bfa8e8d1a2b54ae0c95ddb87f' 'strict-dynamic' 'report-sample' 'self' *.pinterest.com *.pinimg.com *.google.com connect.facebook.net *.google-analytics.com *.facebook.com *.googleadservices.com *.doubleclick.net *.googletagmanager.com *.adyen.com *.adyenpayments.com radar.cedexis.com *.cedexis-test.com www.gstatic.com/recaptcha/ www.recaptcha.net 'unsafe-inline' blob: 'wasm-unsafe-eval'; connect-src 'self' *.pinimg.com *.pinterest.com accounts.google.com *.facebook.com *.dropboxapi.com *.adyen.com *.adyenpayments.com pinterest-aberdeen.s3.amazonaws.com pinterest-aberdeen.s3.us-east-1.amazonaws.com pinterest-anaheim.s3.amazonaws.com pinterest-anaheim.s3.us-east-1.amazonaws.com pinterest-media-upload.s3.amazonaws.com pinterest-media-upload.s3.us-east-1.amazonaws.com pinterest-media-upload.s3-accelerate.amazonaws.com pinterest-media-upload.s3-accelerate.us-east-1.amazonaws.com pinterest-milwaukee.s3.amazonaws.com pinterest-milwaukee.s3.us-east-1.amazonaws.com pinterest-poughkeepsie.s3.amazonaws.com pinterest-poughkeepsie.s3.us-east-1.amazonaws.com pinterest-waterloo.s3.amazonaws.com pinterest-waterloo.s3.us-east-1.amazonaws.com pinterest-plymouth.s3.amazonaws.com pinterest-plymouth.s3.us-east-1.amazonaws.com pinterest-salvador.s3.us-east-1.amazonaws.com *.cedexis.com *.cedexis-radar.net blob: *.tvpixel.com api.pinadmin.com *.live-video.net; media-src 'self' *.pinimg.com blob: data: *.live-video.net; object-src 'self'; form-action 'self'; frame-src 'self' *.google.com *.pinimg.com *.pinterest.com *.pinterdev.com *.facebook.com content.googleapis.com *.adyen.com *.youtube.com *.ytimg.com player.vimeo.com calendly.com vine.co bid.g.doubleclick.net *.fls.doubleclick.net pinterest-milwaukee.s3.amazonaws.com pinterest-milwaukee.s3.us-east-1.amazonaws.com pinterest-waterloo.s3.amazonaws.com pinterest-waterloo.s3.us-east-1.amazonaws.com pinlogs.s3.amazonaws.com pinlogs.s3.us-east-1.amazonaws.com pinterest-hilo.s3.us-east-1.amazonaws.com pinterest-hilo.s3.amazonaws.com advertising-delivery-metric-reports.s3.amazonaws.com advertising-delivery-metric-reports.s3.us-east-1.amazonaws.com servedby.flashtalking.com pinterest-uk.admo.tv pinterest-uk-web.admo.tv fbrpc://call www.recaptcha.net px.ads.linkedin.com; worker-src 'self' blob: 'unsafe-inline'; base-uri 'none'; report-uri /_/_/csp_report/?rid=3593254584448050; frame-ancestors 'self' , script-src 'nonce-3153cb5bfa8e8d1a2b54ae0c95ddb87f' 'report-sample' 'self' *.pinterest.com *.pinimg.com *.google.com connect.facebook.net *.google-analytics.com *.facebook.com *.googleadservices.com *.doubleclick.net *.googletagmanager.com *.adyen.com *.adyenpayments.com radar.cedexis.com *.cedexis-test.com www.gstatic.com/recaptcha/ www.recaptcha.net 'unsafe-inline' blob: 'wasm-unsafe-eval'; report-uri /_/_/csp_report/?rid=3593254584448050
content-security-policy-report-only: default-src 'self' s.pinimg.com; style-src 'self' 'unsafe-inline' blob: data: *.pinimg.com *.pinterest.com accounts.google.com fonts.googleapis.com *.adyen.com *.adyenpayments.com; font-src 'self' data: s.pinimg.com fonts.gstatic.com fonts.googleapis.com use.typekit.net; media-src 'self' *.pinimg.com blob: data: *.live-video.net; frame-src *; img-src * data: blob:; connect-src *; worker-src * blob:; script-src 'nonce-3153cb5bfa8e8d1a2b54ae0c95ddb87f' 'strict-dynamic' 'report-sample' 'self' * 'unsafe-inline' blob:; report-uri /_/_/csp_report/?reportonly , script-src 'report-sample' 'self' * 'unsafe-inline' blob:; report-uri /_/_/csp_report/?reportonly
x-frame-options: SAMEORIGIN
Content-Type: text/html; charset=utf-8
Link: ; rel=preconnect; crossorigin=anonymous, ; rel=preconnect; crossorigin=anonymous, ; rel=preconnect; crossorigin=anonymous
Trailer: x-pinterest-sli-streamed-response-type
x-envoy-upstream-service-time: 122
pinterest-generated-by: coreapp-webapp-prod-0a03f0d7
Content-Encoding: gzip
pinterest-version: 693c862
referrer-policy: origin
x-pinterest-rid: 3593254584448050
Date: Wed, 15 Jun 2022 07:40:04 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Connection: Transfer-Encoding
Set-Cookie: csrftoken=6b8a649c6f0d3781aba0cbe9f4efe5b9; path=/; expires=Thu, 15 Jun 2023 07:40:04 GMT; samesite=lax; secure
Set-Cookie: _pinterest_sess=TWc9PSZjcEVBczZ3YkJyRXpNanVKN2NZd081czZ1VVYwYzBIdjV4V01LbkVSb1hPbjhZQzVHMk4vK0VndW44Z0hnbjZoUmNOYVJoNlpka2pXNVBCa1NxUWlkU1lzVDVDYUtSMW1vYlVyR2JFOUlxaz0mZ0pXaDl4dFBKMzNRYTVIeXNkQS96RGZ1cndjPQ==; path=/; expires=Sat, 10 Jun 2023 07:40:04 GMT; samesite=none; secure; httponly
Set-Cookie: _auth=0; path=/; expires=Sat, 10 Jun 2023 07:40:04 GMT; secure; httponly
Set-Cookie: _pinterest_referrer=https://zoxh.com; path=/; expires=Wed, 15 Jun 2022 07:45:04 GMT; secure
Set-Cookie: _routing_id="4d608d15-12d7-40c1-8247-6006effb03cf"; Max-Age=86400; Path=/; HttpOnly
AKAMAI-GRN: 0.9db1afc3.1655278804.78f13486
X-CDN: akamai
Strict-Transport-Security: max-age=31536000 ; includeSubDomains ; preload