39 technologies5 categories
yankeecandle.com is built on Salesforce Commerce Cloud with Cloudflare and Google Tag Manager. It ranks #59,410 globally.
The frontend relies on React. Analytics are handled by Google Tag Manager and Google Analytics. Infrastructure includes Cloudflare and Amazon CloudFront.
Tech Stack Highlights
Core Platform1
Salesforce Commerce Cloud
Ecommerce
100%
3 evidence signals
Cookie
dw_dntCookie
dwsidScript
https://www.yankeecandle.com/on/demandware.static/Sites-homefragranceus-Site/-/default/v1654687500364/js/catchpoint-yccus.jsFrameworks & Languages5
React
JavaScript frameworks
100%
3 evidence signals
HTML
data-reactHTML
data-reactrootDOM
react-rootBootstrap
UI frameworks
100%
2 evidence signals
HTML
<link id="embeddedMessagingBootstrapStyles" href="https://newellbrands.my.site.com/ESWConsumerHomeFrScript
https://newellbrands.my.site.com/ESWConsumerHomeFragrance1734630626230/assets/js/bootstrap.min.jsChakra UI
UI frameworks
100%
3 evidence signals
HTML
chakra-css
--chakra-DOM
chakra-classDaisyUI
UI frameworks
75%
1 evidence signal
HTML
drawer-toggleTailwind CSS
UI frameworks
50%
1 evidence signal
HTML
implied by DaisyUIAnalytics & Marketing20
Google Tag Manager
Tag managers
100%
3 evidence signals
HTML
googletagmanager.com/gtm.jsJS Global
google_tag_manager → objectJS Global
dataLayer → objectGoogle Analytics
Analytics
100%
3 evidence signals
Cookie
_gaScript
https://www.googletagmanager.com/gtag/js?id=G-4J0Z49NM41&cx=c>m=4e62d1JS Global
gtag → functionAmazon Advertising
Advertising
100%
2 evidence signals
Script
https://c.amazon-adsystem.com/aat/amzn.jsXHR
https://c.amazon-adsystem.com/aat/amzn.jsFacebook Pixelv2.9.265
Analytics
100%
3 evidence signals
Script
https://connect.facebook.net/signals/config/840479575989403?v=2.9.265&r=stable&domain=www.yankeecandle.com&hme=8faeb0ed09c145bbd9d3213e762abac29e9f76b8e7a9df9d71a3058625e3b7dd&ex_m=96%2C187%2C136%2C21%2C68%2C69%2C129%2C64%2C43%2C130%2C73%2C63%2C10%2C143%2C82%2C15%2C95%2C124%2C117%2C71%2C74%2C123%2C140%2C104%2C145%2C7%2C3%2C4%2C6%2C5%2C2%2C83%2C93%2C146%2C151%2C201%2C57%2C167%2C168%2C50%2C238%2C28%2C70%2C213%2C212%2C211%2C30%2C56%2C9%2C59%2C89%2C90%2C91%2C97%2C120%2C29%2C27%2C122%2C119%2C118%2C137%2C72%2C139%2C138%2C45%2C55%2C113%2C14%2C142%2C40%2C226%2C227%2C225%2C24%2C25%2C26%2C17%2C19%2C39%2C35%2C37%2C36%2C78%2C84%2C88%2C102%2C128%2C131%2C41%2C103%2C22%2C20%2C109%2C65%2C33%2C133%2C132%2C134%2C125%2C23%2C32%2C54%2C101%2C141%2C66%2C16%2C135%2C106%2C77%2C62%2C18%2C31%2C249%2C194%2C181%2C182%2C180%2C252%2C244%2C195%2C99%2C121%2C76%2C111%2C49%2C42%2C44%2C105%2C110%2C116%2C53%2C60%2C115%2C48%2C51%2C47%2C92%2C144%2C0%2C114%2C13%2C112%2C11%2C1%2C52%2C85%2C58%2C61%2C108%2C81%2C80%2C147%2C148%2C86%2C87%2C8%2C94%2C46%2C126%2C79%2C75%2C67%2C107%2C98%2C38%2C127%2C34%2C100%2C12%2C149Script
https://connect.facebook.net/en_US/fbevents.jsJS Global
_fbq → function(v2.9.265)Microsoft Advertising
Advertising
100%
5 evidence signals
Cookie
_uetsidCookie
_uetvidScript
https://bat.bing.com/bat.jsJS Global
UET → functionJS Global
uetq → objectCriteo
Advertising
100%
2 evidence signals
Script
https://static.criteo.net/js/ld/ld.jsJS Global
criteo_q → objectAB Tasty
A/B Testing
100%
3 evidence signals
Script
https://try.abtasty.com/da9734ede8d7452395b73df8189de48f.jsJS Global
ABTasty → objectJS Global
_abtasty → objectSalesforce Interaction Studio
Personalisation
100%
2 evidence signals
Script
https://cdn.evgnet.com/beacon/newell/prod_yankee/scripts/evergage.min.jsJS Global
Evergage → objectAttentive
Personalisation
100%
3 evidence signals
Script
https://cdn.attn.tv/growth-tag-assets/client-configs/9Im.jsJS Global
__attentive → objectJS Global
__attentive_domain → stringM
Microsoft 365
Email
100%
1 evidence signal
dns
MX: yankeecandle-com.mail.protection.outlook.comM
Mailgun
Email
95%
1 evidence signal
dns
SPF includes mailgun.orgCloudflare Browser Insights
Analytics
75%
1 evidence signal
Script
https://static.cloudflareinsights.com/beacon.min.js/vcd15cbe7772f49c399c6a5babf22c1241717689176015Snowplow Analytics
Analytics
75%
1 evidence signal
JS Global
Snowplow → objectReddit Ads
Advertising
75%
1 evidence signal
Script
https://www.redditstatic.com/ads/pixel.jsBazaarvoice Reviews
Reviews
75%
1 evidence signal
Script
https://apps.bazaarvoice.com/deployments/yankeecandle/main_site/production/en_US/bv.jsPinterest Conversion Tagv3.0
Analytics
75%
1 evidence signal
JS Global
pintrk → function(v3.0)Movable Ink
Personalisation
75%
1 evidence signal
JS Global
MovableInkTrack → stringFullStory
Analytics
75%
3 evidence signals
Script
https://edge.fullstory.com/datalayer/v4/latest.jsScript
https://edge.fullstory.com/s/fs.jsScript
https://rs.fullstory.com/rec/integrations?OrgId=12ZXGN&isInFrame=false&isNative=falseS
Salesforce
CRM
75%
1 evidence signal
HTML
implied by Salesforce Commerce CloudiGoDigital
Personalisation
75%
1 evidence signal
Script
https://110007161.collect.igodigital.com/collect.jsInfrastructure & Security6
Cloudflare
CDN
100%
4 evidence signals
Header
9cf8c6cba8c25c1f-SJCHeader
cloudflare: cloudflareCookie
__cf_bmdns
CNAME: www.yankeecandle.com.cdn.cloudflare.netOsano
Cookie compliance
100%
2 evidence signals
Script
https://cmp.osano.com/16CVrKSNQJqIQ3AvP/13ae4933-a183-45a9-9c1f-c1de1c93590b/osano.jsJS Global
Osano → functionAmazon CloudFront
CDN
75%
2 evidence signals
Header
\(CloudFront\)$: 1.1 594aa5e4a6030c26c04a6a841838abb2.cloudfront.net (CloudFront)Header
3oGjVG35ruuR6mqn5IlYAfHEFWXHn8oW_4x3FFgw7hgXgMKCUn6upQ==Cloudflare Bot Management
Security
75%
1 evidence signal
Cookie
__cf_bmUnpkg
CDN
75%
1 evidence signal
Script
https://unpkg.com/web-vitals@5.0.1/dist/web-vitals.attribution.iife.jsAmazon Web Services
PaaS
50%
1 evidence signal
HTML
implied by Amazon CloudFrontLibraries & Utilities7
web-vitalsv5.0.1
JavaScript libraries
100%
2 evidence signals
Script
https://unpkg.com/web-vitals@5.0.1/dist/web-vitals.attribution.iife.jsJS Global
webVitals → objectOrdergroove
Payment processors
100%
2 evidence signals
Header
\.ordergroove\.com: default-src blob 'self' *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.instagram.com *.truefitcorp.com *.bazaarvoice.com *.amplitude.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.doubleclick.net *.googleadservices.com rs.fullstory.com *.unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net *.criteo.com settings.luckyorange.net ct.pinterest.com *.3gl.net *.facebook.com data: *.osano.com *.yankeecandle.com *.facebook.com *.newellbrands.com *.afterpay.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.creativecdn.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';img-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.igodigital.com newell-prod.dotcms.cloud *.amazonaws.com *.sprinklr.com *.evergage.com *.bazaarvoice.com *.afterpay.com *.truefitcorp.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.bing.com *.facebook.com ct.pinterest.com *.paypal.com www.googletagmanager.com data: *.webcollage.net *.syndigo.com *.syndigo.cloud *.salsify.com salsify-ecdn.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;media-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.salsify.com salsify-ecdn.com data: 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';script-src 'self' 'unsafe-eval' 'unsafe-inline' *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com *.gstatic.com *.googleadservices.com googleads.g.doubleclick.net rs.fullstory.com edge.fullstory.com unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net sslwidget.criteo.com cmp.osano.com *.3gl.net *.yankeecandle.com *.newellbrands.com *.afterpay.com *.iesnare.com *.abtasty.com *.ordergroove.com *.abtasty.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.salesforceliveagent.com *.sandbox.my.site.com *.my.salesforce-scrt.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io *.jsdelivr.net newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;frame-src 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.paypal.com *.sandbox.my.site.com *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;script-src-attr 'self' 'unsafe-inline' 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';style-src 'self' *.yankeecandle.com 'unsafe-eval' 'unsafe-inline' *.commercecloud.salesforce.com newell-prod.dotcms.cloud *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.paypal.com *.salsify.com salsify-ecdn.com newellbrands.my.site.com *.sandbox.my.site.com data: *.jsdelivr.net;worker-src 'self' *.yankeecandle.com blob: data:;connect-src 'self' api.cquotient.com *.yankeecandle.com *.commercecloud.salesforce.com *.luckyorange.net *.bing.com *.igodigital.com *.adform.net *.doubleclick.net *.facebook.com *.pinterest.com *.igodigital.com *.facebook.com *.fullstory.com *.3gl.net *.google.com *.google-analytics.com *.evergage.com *.fullstory.com *.3gl.net *.fullstory.com *.sprinklr.com *.bazaarvoice.com *.truefitcorp.com *.osano.com *.newellbrands.com *.amplitude.com *.afterpay.com *.paypal.com *.sjwoe.com data: *.ordergroove.com *.abtasty.com *.googleapis.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.criteo.com *.my.salesforce-scrt.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.dotcms.cloud *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;frame-ancestors 'self' *.yankeecandle.com *.commercecloud.com *.dotcms.cloud *.commercecloud.com *.mrt.yankeecandle.com https://newellbrands.my.site.com/;upgrade-insecure-requestsScript
https://static.ordergroove.com/4ff46b88bfa411e9a447bc764e10b970/main.jscore-js
JavaScript libraries
75%
1 evidence signal
JS Global
__core-js_shared__ → objectLoadable-Components
JavaScript libraries
75%
1 evidence signal
JS Global
__LOADABLE_LOADED_CHUNKS__ → objectPayPal
Payment processors
75%
1 evidence signal
Header
\.paypal\.com: default-src blob 'self' *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.instagram.com *.truefitcorp.com *.bazaarvoice.com *.amplitude.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.doubleclick.net *.googleadservices.com rs.fullstory.com *.unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net *.criteo.com settings.luckyorange.net ct.pinterest.com *.3gl.net *.facebook.com data: *.osano.com *.yankeecandle.com *.facebook.com *.newellbrands.com *.afterpay.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.creativecdn.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';img-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.igodigital.com newell-prod.dotcms.cloud *.amazonaws.com *.sprinklr.com *.evergage.com *.bazaarvoice.com *.afterpay.com *.truefitcorp.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.bing.com *.facebook.com ct.pinterest.com *.paypal.com www.googletagmanager.com data: *.webcollage.net *.syndigo.com *.syndigo.cloud *.salsify.com salsify-ecdn.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;media-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.salsify.com salsify-ecdn.com data: 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';script-src 'self' 'unsafe-eval' 'unsafe-inline' *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com *.gstatic.com *.googleadservices.com googleads.g.doubleclick.net rs.fullstory.com edge.fullstory.com unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net sslwidget.criteo.com cmp.osano.com *.3gl.net *.yankeecandle.com *.newellbrands.com *.afterpay.com *.iesnare.com *.abtasty.com *.ordergroove.com *.abtasty.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.salesforceliveagent.com *.sandbox.my.site.com *.my.salesforce-scrt.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io *.jsdelivr.net newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;frame-src 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.paypal.com *.sandbox.my.site.com *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;script-src-attr 'self' 'unsafe-inline' 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';style-src 'self' *.yankeecandle.com 'unsafe-eval' 'unsafe-inline' *.commercecloud.salesforce.com newell-prod.dotcms.cloud *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.paypal.com *.salsify.com salsify-ecdn.com newellbrands.my.site.com *.sandbox.my.site.com data: *.jsdelivr.net;worker-src 'self' *.yankeecandle.com blob: data:;connect-src 'self' api.cquotient.com *.yankeecandle.com *.commercecloud.salesforce.com *.luckyorange.net *.bing.com *.igodigital.com *.adform.net *.doubleclick.net *.facebook.com *.pinterest.com *.igodigital.com *.facebook.com *.fullstory.com *.3gl.net *.google.com *.google-analytics.com *.evergage.com *.fullstory.com *.3gl.net *.fullstory.com *.sprinklr.com *.bazaarvoice.com *.truefitcorp.com *.osano.com *.newellbrands.com *.amplitude.com *.afterpay.com *.paypal.com *.sjwoe.com data: *.ordergroove.com *.abtasty.com *.googleapis.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.criteo.com *.my.salesforce-scrt.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.dotcms.cloud *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;frame-ancestors 'self' *.yankeecandle.com *.commercecloud.com *.dotcms.cloud *.commercecloud.com *.mrt.yankeecandle.com https://newellbrands.my.site.com/;upgrade-insecure-requestsFont Awesome
Font scripts
75%
1 evidence signal
JS Global
___FONT_AWESOME___ → objectAdobe Dynamic Media Classic
Digital asset management
75%
1 evidence signal
Header
\.scene7\.com: default-src blob 'self' *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.instagram.com *.truefitcorp.com *.bazaarvoice.com *.amplitude.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.doubleclick.net *.googleadservices.com rs.fullstory.com *.unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net *.criteo.com settings.luckyorange.net ct.pinterest.com *.3gl.net *.facebook.com data: *.osano.com *.yankeecandle.com *.facebook.com *.newellbrands.com *.afterpay.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.creativecdn.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';img-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.igodigital.com newell-prod.dotcms.cloud *.amazonaws.com *.sprinklr.com *.evergage.com *.bazaarvoice.com *.afterpay.com *.truefitcorp.com *.googleapis.com www.google-analytics.com www.google.com *.gstatic.com *.bing.com *.facebook.com ct.pinterest.com *.paypal.com www.googletagmanager.com data: *.webcollage.net *.syndigo.com *.syndigo.cloud *.salsify.com salsify-ecdn.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;media-src 'self' *.yankeecandle.com *.scene7.com *.imgix.net *.commercecloud.salesforce.com *.sprinklr.com *.evergage.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.salsify.com salsify-ecdn.com data: 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';script-src 'self' 'unsafe-eval' 'unsafe-inline' *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.afterpay.com *.paypal.com *.googleapis.com www.google-analytics.com *.gstatic.com *.googleadservices.com googleads.g.doubleclick.net rs.fullstory.com edge.fullstory.com unpkg.com *.facebook.net *.pinimg.com *.bing.com *.cloudfront.net *.adform.net *.oribi.io i.clarity.ms www.clarity.ms *.devergage.com *.criteo.net sslwidget.criteo.com cmp.osano.com *.3gl.net *.yankeecandle.com *.newellbrands.com *.afterpay.com *.iesnare.com *.abtasty.com *.ordergroove.com *.abtasty.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.salesforceliveagent.com *.sandbox.my.site.com *.my.salesforce-scrt.com *.attn.tv 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io *.jsdelivr.net newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;frame-src 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.paypal.com *.sandbox.my.site.com *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io newellbrands.my.site.com newellbrands.my.salesforce-scrt.com;script-src-attr 'self' 'unsafe-inline' 'nonce-4c30ca8f4c7b26ec70206fadff0f6833';style-src 'self' *.yankeecandle.com 'unsafe-eval' 'unsafe-inline' *.commercecloud.salesforce.com newell-prod.dotcms.cloud *.sprinklr.com *.evergage.com platform.twitter.com *.googletagmanager.com *.evgnet.com *.igodigital.com *.truefitcorp.com *.bazaarvoice.com *.googleapis.com www.google-analytics.com *.gstatic.com *.newellbrands.com *.afterpay.com *.paypal.com *.salsify.com salsify-ecdn.com newellbrands.my.site.com *.sandbox.my.site.com data: *.jsdelivr.net;worker-src 'self' *.yankeecandle.com blob: data:;connect-src 'self' api.cquotient.com *.yankeecandle.com *.commercecloud.salesforce.com *.luckyorange.net *.bing.com *.igodigital.com *.adform.net *.doubleclick.net *.facebook.com *.pinterest.com *.igodigital.com *.facebook.com *.fullstory.com *.3gl.net *.google.com *.google-analytics.com *.evergage.com *.fullstory.com *.3gl.net *.fullstory.com *.sprinklr.com *.bazaarvoice.com *.truefitcorp.com *.osano.com *.newellbrands.com *.amplitude.com *.afterpay.com *.paypal.com *.sjwoe.com data: *.ordergroove.com *.abtasty.com *.googleapis.com *.webcollage.net *.syndigo.com *.yottaa.com *.yottaa.net *.salsify.com salsify-ecdn.com *.criteo.com *.my.salesforce-scrt.com 'nonce-4c30ca8f4c7b26ec70206fadff0f6833' *.dotcms.cloud *.amazon-adsystem.com *.reddit.com *.redditstatic.com *.pinterest.com *.doubleclick.net *.sc-static.net *.snapchat.com *.tapad.com *.google.com *.attn.tv *.attentivemobile.com *.micpn.com *.cnstrc.com *.algoliaradar.com *.algolia.io;frame-ancestors 'self' *.yankeecandle.com *.commercecloud.com *.dotcms.cloud *.commercecloud.com *.mrt.yankeecandle.com https://newellbrands.my.site.com/;upgrade-insecure-requests