21 technologies5 categories
jomajewellery.com is built on Hyva Themes with Google Tag Manager and Google Analytics.
The frontend relies on Tailwind CSS. Analytics are handled by Google Tag Manager and Google Analytics. Infrastructure includes Cloudflare DNS and Cloudflare.
Tech Stack Highlights
Core Platform1
Hyva Themes
Ecommerce
100%
2 evidence signals
Header
^Hyva Themes$: Hyva ThemesJS Global
hyva → objectFrameworks & Languages3
Tailwind CSS
UI frameworks
75%
1 evidence signal
css
--tw-PHP
Programming languages
75%
1 evidence signal
Cookie
PHPSESSIDAlpine.js
JavaScript frameworks
75%
1 evidence signal
HTML
implied by Hyva ThemesAnalytics & Marketing8
Google Tag Manager
Tag managers
100%
3 evidence signals
HTML
googletagmanager.com/gtm.jsJS Global
google_tag_manager → objectJS Global
dataLayer → objectGoogle Analytics
Analytics
100%
2 evidence signals
Script
https://www.googletagmanager.com/gtag/js?id=AW-751095516>g_health=1JS Global
gtag → functionM
Microsoft 365
Email
100%
1 evidence signal
dns
MX: jomajewellery-com.mail.protection.outlook.comS
SendGrid
Email
95%
1 evidence signal
dns
SPF includes sendgrid.netA
Amazon SES
Email
95%
1 evidence signal
dns
SPF includes amazonses.comM
Mailgun
Email
95%
1 evidence signal
dns
SPF includes mailgun.orgCloudflare Browser Insights
Analytics
75%
1 evidence signal
Script
https://static.cloudflareinsights.com/beacon.min.js/v8c78df7c7c0f484497ecbca7046644da1771523124516Ometria
Marketing automation
75%
1 evidence signal
JS Global
ometria → objectInfrastructure & Security3
C
Cloudflare DNS
PaaS
100%
1 evidence signal
dns
NS: sandy.ns.cloudflare.comCloudflare
CDN
75%
2 evidence signals
Header
9f2fc89d4ec6cf1f-SJCHeader
cloudflare: cloudflareHSTS
Security
75%
1 evidence signal
Header
max-age=31536000Libraries & Utilities6
HTTP/3
Miscellaneous
75%
1 evidence signal
Header
h3: h3=":443"; ma=86400PayPal
Payment processors
75%
1 evidence signal
Header
\.paypal\.com: font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://*.gstatic.com *.googleapis.com https://cdn.checkout.com *.cdn-apple.com maxcdn.bootstrapcdn.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com 'self' data: *.cloudflare.com *.myfonts.net *.bootstrapcdn.com *.zopim.com *.zdassets.com *.feefo.com *.hotjar.com *.gorgias.chat *.jotform.com *.jotfor.ms data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.adyen.com 'self' *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.zopim.com *.zdassets.com *.jotform.com *.jotfor.ms https://api.ometria.com 'self' 'unsafe-inline'; frame-ancestors *.bolt.com *.stripe.com stripe.com *.link.com *.amazon.com https://pay.google.com https://google.com https://*.google.com *.studentbeans.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com *.bolt.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com www.googletagmanager.com *.adyen.com https://js.checkout.com *.klarna.com *.stripe.com klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.commercepartnerhub.com https://pay.google.com https://google.com https://*.google.com https://*.klarnaservices.com https://applepay.cdn-apple.com https://*.apple.com js.mollie.com *.addthis.com *.hotjar.com *.zopim.com *.zdassets.com *.vimeo.com *.matterport.com vimeo.com *.pinterest.com mention-me.com *.mention-me.com *.paypalobjects.com *.studentbeans.com *.jotform.com *.jotfor.ms csxd.jomajewellery.com csxd.katieloxton.com csxd.alittlesandco.com www.xtento.com https://td.doubleclick.net/ https://creatives.attn.tv eu1.chat.getzowie.com *.amazon-adsystem.com https://katieloxton-gb.attn.tv/ https://jomajewellery-gb.attn.tv/ 'self' 'unsafe-inline'; img-src 'self' data: assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net *.analytics.google.com www.googletagmanager.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com validator.swagger.io *.ftcdn.net *.behance.net data: *.adyen.com https://*.gstatic.com https://images.unsplash.com *.googleapis.com www.feedoptimise.com cdn.feedoptimise.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com 'self' blob: data: https://pay.google.com https://google.com https://*.google.com https://x.klarnacdn.net magefan.com cm.magefan.com https://firebasestorage.googleapis.com *.alothemes.com *.magepow.com https://www.mollie.com *.cloudflare.com *.google.co.uk *.google.com *.googleadservices.com *.bing.com *.cdninstagram.com *.googletagmanager.com *.doubleclick.net *.pinterest.com *.facebook.net *.postcodeanywhere.co.uk *.zopim.com *.zopim.io *.zdassets.com *.feefo.com *.linksynergy.com *.scarabresearch.com *.filestackapi.com *.filestackcontent.com *.ometria.com *.gorgias.chat *.nr-data.net *.imgeng.in jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com *.hotjar.com *.gorgias.io *.clarity.ms *.jotform.com *.jotfor.ms *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.quantserve.com *.w55c.net *.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com https://consent.nxtck.com/ https://consent.mediaforge.com/ https://consent.jrs5.com/ https://assets.gorgias.chat https://storage.googleapis.com https://creatives.attn.tv https://cdn.amplitude.com/libs/analytics-browser-0.4.1-min.js.gz bat.bing.net *.amazon-adsystem.com *.amazon.com *.paa-reporting-advertising.amazon data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net *.commerce-payment-services.com commerce-payments-sdk.adobe.io www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com *.vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com *.bolt.com *.commerce-quick-checkout.com http://localhost:8082 https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com *.cdn-apple.com *.braintreegateway.com *.adyen.com https://maps.googleapis.com *.googleapis.com *.gstatic.com https://*.checkout.com *.klarnacdn.net www.feedoptimise.com cdn.feedoptimise.com *.stripe.com *.stripe.network *.stripecdn.com klarna.com *.klarna.com *.klarnaevt.com *.amazon.com *.link.com https://static.cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com https://pay.google.com https://google.com https://applepay.cdn-apple.com *.avada.io *.shopify.com *.alothemes.com *.magepow.com js.mollie.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.cloudflare.com *.cloudflareinsights.com *.google-analytics.com *.googletagmanager.com *.dyn-rev.app *.amplitude.com *.jquery.com *.fontawesome.com *.bing.com *.doubleclick.net *.instagram.com *.addthis.com *.addthisedge.com *.moatads.com *.facebook.net *.pinterest.com *.hotjar.com *.pcapredict.com chimpstatic.com *.wisepops.com *.pinimg.com *.zopim.com *.zdassets.com *.postcodeanywhere.co.uk *.feefo.com *.matterport.com *.rakuten.com *.linksynergy.com *.nxtck.com *.xg4ken.com *.emarsys.net *.scarabresearch.com *.filestackapi.com *.ometria.com *.gorgias.chat *.getzowie.com *.cloudfront.net *.googleoptimize.com *.tiktok.com *.tiktokw.us *.attn.tv *.duel.me *.clarity.ms mention-me.com *.mention-me.com *.polyfill.io *.studentbeans.com *.jotform.com *.jotfor.ms unpkg.com *.unpkg.com *.contentsquare.net *.quantserve.com *.quantcount.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com *.posthog.com https://plausible.io d5yoctgpv4cpx.cloudfront.net *.amazon-adsystem.com app.contentsquare.com. *.contentsquare.net 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com https://fonts.googleapis.com/ https://cdn.checkout.com maxcdn.bootstrapcdn.com *.stripe.network *.stripecdn.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com *.cloudflare.com *.googleapis.com *.gstatic.com *.myfonts.net *.typekit.net *.bootstrapcdn.com *.postcodeanywhere.co.uk *.filestackapi.com *.feefo.com *.jotform.com *.jotfor.ms *.contentsquare.net *.quantserve.com *.quantcount.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.filestackcontent.com cdn.filestackcontent.com *.zopim.com *.zdassets.com *.matterport.com *.gorgias.chat *.getzowie.com jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.google-analytics.com www.googleadservices.com *.analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.bolt.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.braintreegateway.com *.braintree-api.com *.adyen.com https://maps.googleapis.com https://player.vimeo.com *.googleapis.com https://js.checkout.com *.klarnacdn.net *.klarna.com api.addressy.com *.stripe.com klarna.com *.klarnaevt.com *.link.com *.amazon.com https://static.cloudflareinsights.com https://cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com data: *.filestackcontent.com cdn.filestackcontent.com https://pay.google.com https://google.com https://*.google.com https://applepay.cdn-apple.com https://*.apple.com https://get.geojs.io *.avada.io *.alothemes.com *.magepow.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com api.duel.me bat.bing.com *.cloudflare.com *.cloudflareinsights.com *.addthis.com *.wisepops.com *.zdassets.com *.pinterest.com *.facebook.net *.instagram.com *.hotjar.com *.hotjar.io wss://*.hotjar.io wss://*.hotjar.com *.chimpstatic.com *.feefo.com *.zendesk.com *.pinimg.com *.zopim.com wss://widget-mediator.zopim.com *.postcodeanywhere.co.uk *.matterport.com stats.g.doubleclick.net *.emarsys.net *.scarabresearch.com *.filestackapi.com *.gorgias.chat wss://*.gorgias.chat gorgias-convert.com *.getzowie.com *.amplitude.com *.ometria.com *.attn.tv *.attentivemobile.com *.tiktok.com *.tiktokw.us *.clarity.ms mention-me.com *.mention-me.com *.ksearchnet.com *.quantserve.com *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.co.uk *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.googlesyndication.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com *.amazonaws.com https://consent.jrs5.com/ https://pagead2.googlesyndication.com/ https://googleads.g.doubleclick.net/pagead/ https://config.gorgias.chat https://config.gorgias.io https://us-east1-898b.gorgias.chat https://api.gorgias.work https://eu.i.posthog.com https://plausible.io bat.bing.net eu1.chat.getzowie.com *.paa-reporting-advertising.amazon *.amazon-adsystem.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src *.zopim.com *.zopim.io *.zdassets.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
upgrade-insecure-requests;Typekit
Font scripts
75%
1 evidence signal
HTML
<link rel="preconnect" href="https://use.typekit.netLozad.js
JavaScript libraries
75%
1 evidence signal
JS Global
lozad → functionKlarna Checkout
Payment processors
75%
1 evidence signal
Header
\.klarna(?:cdn|services)\.(?:net|com): font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://*.gstatic.com *.googleapis.com https://cdn.checkout.com *.cdn-apple.com maxcdn.bootstrapcdn.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com 'self' data: *.cloudflare.com *.myfonts.net *.bootstrapcdn.com *.zopim.com *.zdassets.com *.feefo.com *.hotjar.com *.gorgias.chat *.jotform.com *.jotfor.ms data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.adyen.com 'self' *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.zopim.com *.zdassets.com *.jotform.com *.jotfor.ms https://api.ometria.com 'self' 'unsafe-inline'; frame-ancestors *.bolt.com *.stripe.com stripe.com *.link.com *.amazon.com https://pay.google.com https://google.com https://*.google.com *.studentbeans.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com *.bolt.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com www.googletagmanager.com *.adyen.com https://js.checkout.com *.klarna.com *.stripe.com klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.commercepartnerhub.com https://pay.google.com https://google.com https://*.google.com https://*.klarnaservices.com https://applepay.cdn-apple.com https://*.apple.com js.mollie.com *.addthis.com *.hotjar.com *.zopim.com *.zdassets.com *.vimeo.com *.matterport.com vimeo.com *.pinterest.com mention-me.com *.mention-me.com *.paypalobjects.com *.studentbeans.com *.jotform.com *.jotfor.ms csxd.jomajewellery.com csxd.katieloxton.com csxd.alittlesandco.com www.xtento.com https://td.doubleclick.net/ https://creatives.attn.tv eu1.chat.getzowie.com *.amazon-adsystem.com https://katieloxton-gb.attn.tv/ https://jomajewellery-gb.attn.tv/ 'self' 'unsafe-inline'; img-src 'self' data: assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net *.analytics.google.com www.googletagmanager.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com validator.swagger.io *.ftcdn.net *.behance.net data: *.adyen.com https://*.gstatic.com https://images.unsplash.com *.googleapis.com www.feedoptimise.com cdn.feedoptimise.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com 'self' blob: data: https://pay.google.com https://google.com https://*.google.com https://x.klarnacdn.net magefan.com cm.magefan.com https://firebasestorage.googleapis.com *.alothemes.com *.magepow.com https://www.mollie.com *.cloudflare.com *.google.co.uk *.google.com *.googleadservices.com *.bing.com *.cdninstagram.com *.googletagmanager.com *.doubleclick.net *.pinterest.com *.facebook.net *.postcodeanywhere.co.uk *.zopim.com *.zopim.io *.zdassets.com *.feefo.com *.linksynergy.com *.scarabresearch.com *.filestackapi.com *.filestackcontent.com *.ometria.com *.gorgias.chat *.nr-data.net *.imgeng.in jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com *.hotjar.com *.gorgias.io *.clarity.ms *.jotform.com *.jotfor.ms *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.quantserve.com *.w55c.net *.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com https://consent.nxtck.com/ https://consent.mediaforge.com/ https://consent.jrs5.com/ https://assets.gorgias.chat https://storage.googleapis.com https://creatives.attn.tv https://cdn.amplitude.com/libs/analytics-browser-0.4.1-min.js.gz bat.bing.net *.amazon-adsystem.com *.amazon.com *.paa-reporting-advertising.amazon data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net *.commerce-payment-services.com commerce-payments-sdk.adobe.io www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com *.vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com *.bolt.com *.commerce-quick-checkout.com http://localhost:8082 https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com *.cdn-apple.com *.braintreegateway.com *.adyen.com https://maps.googleapis.com *.googleapis.com *.gstatic.com https://*.checkout.com *.klarnacdn.net www.feedoptimise.com cdn.feedoptimise.com *.stripe.com *.stripe.network *.stripecdn.com klarna.com *.klarna.com *.klarnaevt.com *.amazon.com *.link.com https://static.cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com https://pay.google.com https://google.com https://applepay.cdn-apple.com *.avada.io *.shopify.com *.alothemes.com *.magepow.com js.mollie.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.cloudflare.com *.cloudflareinsights.com *.google-analytics.com *.googletagmanager.com *.dyn-rev.app *.amplitude.com *.jquery.com *.fontawesome.com *.bing.com *.doubleclick.net *.instagram.com *.addthis.com *.addthisedge.com *.moatads.com *.facebook.net *.pinterest.com *.hotjar.com *.pcapredict.com chimpstatic.com *.wisepops.com *.pinimg.com *.zopim.com *.zdassets.com *.postcodeanywhere.co.uk *.feefo.com *.matterport.com *.rakuten.com *.linksynergy.com *.nxtck.com *.xg4ken.com *.emarsys.net *.scarabresearch.com *.filestackapi.com *.ometria.com *.gorgias.chat *.getzowie.com *.cloudfront.net *.googleoptimize.com *.tiktok.com *.tiktokw.us *.attn.tv *.duel.me *.clarity.ms mention-me.com *.mention-me.com *.polyfill.io *.studentbeans.com *.jotform.com *.jotfor.ms unpkg.com *.unpkg.com *.contentsquare.net *.quantserve.com *.quantcount.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com *.posthog.com https://plausible.io d5yoctgpv4cpx.cloudfront.net *.amazon-adsystem.com app.contentsquare.com. *.contentsquare.net 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com https://fonts.googleapis.com/ https://cdn.checkout.com maxcdn.bootstrapcdn.com *.stripe.network *.stripecdn.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com *.cloudflare.com *.googleapis.com *.gstatic.com *.myfonts.net *.typekit.net *.bootstrapcdn.com *.postcodeanywhere.co.uk *.filestackapi.com *.feefo.com *.jotform.com *.jotfor.ms *.contentsquare.net *.quantserve.com *.quantcount.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.filestackcontent.com cdn.filestackcontent.com *.zopim.com *.zdassets.com *.matterport.com *.gorgias.chat *.getzowie.com jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.google-analytics.com www.googleadservices.com *.analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.bolt.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.braintreegateway.com *.braintree-api.com *.adyen.com https://maps.googleapis.com https://player.vimeo.com *.googleapis.com https://js.checkout.com *.klarnacdn.net *.klarna.com api.addressy.com *.stripe.com klarna.com *.klarnaevt.com *.link.com *.amazon.com https://static.cloudflareinsights.com https://cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com data: *.filestackcontent.com cdn.filestackcontent.com https://pay.google.com https://google.com https://*.google.com https://applepay.cdn-apple.com https://*.apple.com https://get.geojs.io *.avada.io *.alothemes.com *.magepow.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com api.duel.me bat.bing.com *.cloudflare.com *.cloudflareinsights.com *.addthis.com *.wisepops.com *.zdassets.com *.pinterest.com *.facebook.net *.instagram.com *.hotjar.com *.hotjar.io wss://*.hotjar.io wss://*.hotjar.com *.chimpstatic.com *.feefo.com *.zendesk.com *.pinimg.com *.zopim.com wss://widget-mediator.zopim.com *.postcodeanywhere.co.uk *.matterport.com stats.g.doubleclick.net *.emarsys.net *.scarabresearch.com *.filestackapi.com *.gorgias.chat wss://*.gorgias.chat gorgias-convert.com *.getzowie.com *.amplitude.com *.ometria.com *.attn.tv *.attentivemobile.com *.tiktok.com *.tiktokw.us *.clarity.ms mention-me.com *.mention-me.com *.ksearchnet.com *.quantserve.com *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.co.uk *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.googlesyndication.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com *.amazonaws.com https://consent.jrs5.com/ https://pagead2.googlesyndication.com/ https://googleads.g.doubleclick.net/pagead/ https://config.gorgias.chat https://config.gorgias.io https://us-east1-898b.gorgias.chat https://api.gorgias.work https://eu.i.posthog.com https://plausible.io bat.bing.net eu1.chat.getzowie.com *.paa-reporting-advertising.amazon *.amazon-adsystem.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src *.zopim.com *.zopim.io *.zdassets.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
upgrade-insecure-requests;MyFonts
Font scripts
75%
1 evidence signal
Header
\.myfonts\.net: font-src www.paypalobjects.com fonts.gstatic.com use.typekit.net *.typekit.net *.gstatic.com https://*.gstatic.com *.googleapis.com https://cdn.checkout.com *.cdn-apple.com maxcdn.bootstrapcdn.com *.stripe.com *.stripecdn.com klarna.com *.klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com 'self' data: *.cloudflare.com *.myfonts.net *.bootstrapcdn.com *.zopim.com *.zdassets.com *.feefo.com *.hotjar.com *.gorgias.chat *.jotform.com *.jotfor.ms data: 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com pilot-payflowlink.paypal.com www.paypal.com www.sandbox.paypal.com *.paypal.com *.adyen.com 'self' *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.zopim.com *.zdassets.com *.jotform.com *.jotfor.ms https://api.ometria.com 'self' 'unsafe-inline'; frame-ancestors *.bolt.com *.stripe.com stripe.com *.link.com *.amazon.com https://pay.google.com https://google.com https://*.google.com *.studentbeans.com 'self'; frame-src fast.amc.demdex.net *.adobe.com geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com bid.g.doubleclick.net *.youtube.com *.youtube-nocookie.com www.paypal.com www.sandbox.paypal.com pilot-payflowlink.paypal.com www.paypalobjects.com player.vimeo.com *.bolt.com https://www.google.com/recaptcha/ *.braintreegateway.com *.paypal.com google.com *.google.com www.googletagmanager.com *.adyen.com https://js.checkout.com *.klarna.com *.stripe.com klarna.com *.klarnacdn.net *.klarnaevt.com *.link.com *.amazon.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com www.commercepartnerhub.com https://pay.google.com https://google.com https://*.google.com https://*.klarnaservices.com https://applepay.cdn-apple.com https://*.apple.com js.mollie.com *.addthis.com *.hotjar.com *.zopim.com *.zdassets.com *.vimeo.com *.matterport.com vimeo.com *.pinterest.com mention-me.com *.mention-me.com *.paypalobjects.com *.studentbeans.com *.jotform.com *.jotfor.ms csxd.jomajewellery.com csxd.katieloxton.com csxd.alittlesandco.com www.xtento.com https://td.doubleclick.net/ https://creatives.attn.tv eu1.chat.getzowie.com *.amazon-adsystem.com https://katieloxton-gb.attn.tv/ https://jomajewellery-gb.attn.tv/ 'self' 'unsafe-inline'; img-src 'self' data: assets.adobedtm.com amcglobal.sc.omtrdc.net dpm.demdex.net cm.everesttech.net *.adobe.com widgets.magentocommerce.com www.googleadservices.com *.google-analytics.com googleads.g.doubleclick.net www.google.com bid.g.doubleclick.net *.analytics.google.com www.googletagmanager.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com i.ytimg.com *.youtube.com p.typekit.net *.paypal.com *.typekit.net *.gstatic.com validator.swagger.io *.ftcdn.net *.behance.net data: *.adyen.com https://*.gstatic.com https://images.unsplash.com *.googleapis.com www.feedoptimise.com cdn.feedoptimise.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com 'self' blob: data: https://pay.google.com https://google.com https://*.google.com https://x.klarnacdn.net magefan.com cm.magefan.com https://firebasestorage.googleapis.com *.alothemes.com *.magepow.com https://www.mollie.com *.cloudflare.com *.google.co.uk *.google.com *.googleadservices.com *.bing.com *.cdninstagram.com *.googletagmanager.com *.doubleclick.net *.pinterest.com *.facebook.net *.postcodeanywhere.co.uk *.zopim.com *.zopim.io *.zdassets.com *.feefo.com *.linksynergy.com *.scarabresearch.com *.filestackapi.com *.filestackcontent.com *.ometria.com *.gorgias.chat *.nr-data.net *.imgeng.in jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com *.hotjar.com *.gorgias.io *.clarity.ms *.jotform.com *.jotfor.ms *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.quantserve.com *.w55c.net *.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com https://consent.nxtck.com/ https://consent.mediaforge.com/ https://consent.jrs5.com/ https://assets.gorgias.chat https://storage.googleapis.com https://creatives.attn.tv https://cdn.amplitude.com/libs/analytics-browser-0.4.1-min.js.gz bat.bing.net *.amazon-adsystem.com *.amazon.com *.paa-reporting-advertising.amazon data: 'self' 'unsafe-inline'; script-src assets.adobedtm.com *.adobe.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com googleads.g.doubleclick.net analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net *.commerce-payment-services.com commerce-payments-sdk.adobe.io www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com www.googleapis.com *.vimeo.com www.vimeo.com *.vimeocdn.com *.youtube.com *.bolt.com *.commerce-quick-checkout.com http://localhost:8082 https://www.gstatic.com/recaptcha/ https://www.google.com/recaptcha/ amcglobal.sc.omtrdc.net *.magento-ds.com use.typekit.net *.typekit.net google.com *.google.com *.cdn-apple.com *.braintreegateway.com *.adyen.com https://maps.googleapis.com *.googleapis.com *.gstatic.com https://*.checkout.com *.klarnacdn.net www.feedoptimise.com cdn.feedoptimise.com *.stripe.com *.stripe.network *.stripecdn.com klarna.com *.klarna.com *.klarnaevt.com *.amazon.com *.link.com https://static.cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com https://pay.google.com https://google.com https://applepay.cdn-apple.com *.avada.io *.shopify.com *.alothemes.com *.magepow.com js.mollie.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com *.cloudflare.com *.cloudflareinsights.com *.google-analytics.com *.googletagmanager.com *.dyn-rev.app *.amplitude.com *.jquery.com *.fontawesome.com *.bing.com *.doubleclick.net *.instagram.com *.addthis.com *.addthisedge.com *.moatads.com *.facebook.net *.pinterest.com *.hotjar.com *.pcapredict.com chimpstatic.com *.wisepops.com *.pinimg.com *.zopim.com *.zdassets.com *.postcodeanywhere.co.uk *.feefo.com *.matterport.com *.rakuten.com *.linksynergy.com *.nxtck.com *.xg4ken.com *.emarsys.net *.scarabresearch.com *.filestackapi.com *.ometria.com *.gorgias.chat *.getzowie.com *.cloudfront.net *.googleoptimize.com *.tiktok.com *.tiktokw.us *.attn.tv *.duel.me *.clarity.ms mention-me.com *.mention-me.com *.polyfill.io *.studentbeans.com *.jotform.com *.jotfor.ms unpkg.com *.unpkg.com *.contentsquare.net *.quantserve.com *.quantcount.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com www.xtento.com cdn.xtento.com *.posthog.com https://plausible.io d5yoctgpv4cpx.cloudfront.net *.amazon-adsystem.com app.contentsquare.com. *.contentsquare.net 'self' 'unsafe-inline' 'unsafe-eval'; style-src *.adobe.com fonts.googleapis.com https://fonts.googleapis.com/ https://cdn.checkout.com maxcdn.bootstrapcdn.com *.stripe.network *.stripecdn.com *.amazon.com *.fontawesome.com https://fonts.bunny.net *.alothemes.com *.magepow.com *.cloudflare.com *.googleapis.com *.gstatic.com *.myfonts.net *.typekit.net *.bootstrapcdn.com *.postcodeanywhere.co.uk *.filestackapi.com *.feefo.com *.jotform.com *.jotfor.ms *.contentsquare.net *.quantserve.com *.quantcount.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src *.adobe.com *.filestackcontent.com cdn.filestackcontent.com *.zopim.com *.zdassets.com *.matterport.com *.gorgias.chat *.getzowie.com jomajewellery.com *.jomajewellery.com katieloxton.com *.katieloxton.com alittlesandco.com *.alittlesandco.com 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src dpm.demdex.net amcglobal.sc.omtrdc.net geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com *.google-analytics.com www.googleadservices.com *.analytics.google.com www.googletagmanager.com *.newrelic.com *.nr-data.net vimeo.com www.sandbox.paypal.com www.paypalobjects.com www.paypal.com pilot-payflowlink.paypal.com *.bolt.com *.adobe.io performance.typekit.net *.sentry.io *.paypal.com google.com *.google.com *.braintreegateway.com *.braintree-api.com *.adyen.com https://maps.googleapis.com https://player.vimeo.com *.googleapis.com https://js.checkout.com *.klarnacdn.net *.klarna.com api.addressy.com *.stripe.com klarna.com *.klarnaevt.com *.link.com *.amazon.com https://static.cloudflareinsights.com https://cloudflareinsights.com *.facebook.com connect.facebook.net graph.facebook.com business.facebook.com data: *.filestackcontent.com cdn.filestackcontent.com https://pay.google.com https://google.com https://*.google.com https://applepay.cdn-apple.com https://*.apple.com https://get.geojs.io *.avada.io *.alothemes.com *.magepow.com *.katieloxton.com *.jomajewellery.com *.alittlesandco.com api.duel.me bat.bing.com *.cloudflare.com *.cloudflareinsights.com *.addthis.com *.wisepops.com *.zdassets.com *.pinterest.com *.facebook.net *.instagram.com *.hotjar.com *.hotjar.io wss://*.hotjar.io wss://*.hotjar.com *.chimpstatic.com *.feefo.com *.zendesk.com *.pinimg.com *.zopim.com wss://widget-mediator.zopim.com *.postcodeanywhere.co.uk *.matterport.com stats.g.doubleclick.net *.emarsys.net *.scarabresearch.com *.filestackapi.com *.gorgias.chat wss://*.gorgias.chat gorgias-convert.com *.getzowie.com *.amplitude.com *.ometria.com *.attn.tv *.attentivemobile.com *.tiktok.com *.tiktokw.us *.clarity.ms mention-me.com *.mention-me.com *.ksearchnet.com *.quantserve.com *.google.ad *.google.ae *.google.com.af *.google.com.ag *.google.com.ai *.google.al *.google.am *.google.co.ao *.google.com.ar *.google.as *.google.at *.google.com.au *.google.az *.google.ba *.google.com.bd *.google.be *.google.bf *.google.bg *.google.com.bh *.google.bi *.google.bj *.google.com.bn *.google.com.bo *.google.com.br *.google.bs *.google.bt *.google.co.bw *.google.by *.google.com.bz *.google.ca *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.co.ck *.google.cl *.google.cm *.google.cn *.google.com.co *.google.co.cr *.google.com.cu *.google.cv *.google.com.cy *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.com.do *.google.dz *.google.com.ec *.google.ee *.google.com.eg *.google.es *.google.com.et *.google.fi *.google.com.fj *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.com.gh *.google.com.gi *.google.gl *.google.gm *.google.gr *.google.com.gt *.google.gy *.google.com.hk *.google.hn *.google.hr *.google.ht *.google.hu *.google.co.id *.google.ie *.google.co.il *.google.im *.google.co.in *.google.iq *.google.is *.google.it *.google.je *.google.com.jm *.google.jo *.google.co.jp *.google.co.ke *.google.com.kh *.google.ki *.google.kg *.google.co.kr *.google.com.kw *.google.kz *.google.la *.google.com.lb *.google.li *.google.lk *.google.co.ls *.google.lt *.google.lu *.google.lv *.google.com.ly *.google.co.ma *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.com.mm *.google.mn *.google.ms *.google.com.mt *.google.mu *.google.mv *.google.mw *.google.com.mx *.google.com.my *.google.co.mz *.google.com.na *.google.com.ng *.google.com.ni *.google.ne *.google.nl *.google.no *.google.com.np *.google.nr *.google.nu *.google.co.nz *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.pl *.google.pn *.google.com.pr *.google.ps *.google.pt *.google.com.py *.google.com.qa *.google.ro *.google.ru *.google.rw *.google.com.sa *.google.com.sb *.google.sc *.google.se *.google.com.sg *.google.sh *.google.si *.google.sk *.google.com.sl *.google.sn *.google.so *.google.sm *.google.sr *.google.st *.google.com.sv *.google.td *.google.tg *.google.co.th *.google.com.tj *.google.tl *.google.tm *.google.tn *.google.to *.google.com.tr *.google.tt *.google.com.tw *.google.co.tz *.google.com.ua *.google.co.ug *.google.co.uk *.google.com.uy *.google.co.uz *.google.com.vc *.google.co.ve *.google.vg *.google.co.vi *.google.com.vn *.google.vu *.google.ws *.google.rs *.google.co.za *.google.co.zm *.google.co.zw *.contentsquare.net *.googlesyndication.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.lgrckt-in.com *.amazonaws.com https://consent.jrs5.com/ https://pagead2.googlesyndication.com/ https://googleads.g.doubleclick.net/pagead/ https://config.gorgias.chat https://config.gorgias.io https://us-east1-898b.gorgias.chat https://api.gorgias.work https://eu.i.posthog.com https://plausible.io bat.bing.net eu1.chat.getzowie.com *.paa-reporting-advertising.amazon *.amazon-adsystem.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src *.zopim.com *.zopim.io *.zdassets.com 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline';
upgrade-insecure-requests;