HTTP/1.1 301 Moved Permanently
Date: Thu, 27 Jul 2023 11:55:02 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Cache-Control: max-age=3600
Expires: Thu, 27 Jul 2023 12:55:02 GMT
Location: https://coveredbyvensure.com/
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=qQ2GQYARDC%2FWlnkdSRnvGyN7an8YRoIWtqvELYvEXWQslyTIiEeIA4keKyFT3OpyRFr%2BBRQvgoEF7rGSjaow9pBk6bEENHbyEpvk0p7kCHrGmr5m4ZT9SgmsVKge6peqEaTUC2vkVdBx3ny78AWsN4Nauw%3D%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ed4b0ec0caa43f2-EWR
alt-svc: h3=":443"; ma=86400
HTTP/2 200
date: Thu, 27 Jul 2023 11:55:02 GMT
content-type: text/html; charset=UTF-8
cache-control: no-cache, private
content-security-policy: default-src 'self' 'unsafe-eval' 'unsafe-inline' gap: ssl.gstatic.com *; script-src 'self' 'report-sample' 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com snap.licdn.com px.ads.linkedin.com google-analytics.com facebook.net licdn.com *.stripe.com stripe.com cdn.jsdelivr.net code.jquery.com cdn.userway.org api-js.mixpanel.com *.pendella.com pendella.com www.google.com fonts.googleapis.com assets.calendly.com www.gstatic.com kit.fontawesome.com *.typekit.net *.processonepayments.com *.assurity.com *.chasepaymentechhostedpay-var.com *.chasepaymentechhostedpay.com *.hotjar.com www.googletagmanager.com app.intercom.io js.intercomcdn.com widget.intercom.io *.upscope.io; style-src 'self' 'report-sample' 'unsafe-inline' onlineerp.solution.quebec stripe.com *.stripe.com cdnjs.cloudflare.com *.pendella.com pendella.com www.google.com fonts.googleapis.com assets.calendly.com cdn.jsdelivr.net www.gstatic.com kit.fontawesome.com *.typekit.net *.processonepayments.com snap.licdn.com *.assurity.com *.chasepaymentechhostedpay-var.com *.chasepaymentechhostedpay.com *.hotjar.com www.googletagmanager.com *.intercom.io js.intercomcdn.com cdn.userway.org; style-src-elem 'self' 'report-sample' 'unsafe-inline' onlineerp.solution.quebec stripe.com *.stripe.com cdnjs.cloudflare.com *.pendella.com pendella.com www.google.com fonts.googleapis.com assets.calendly.com cdn.jsdelivr.net www.gstatic.com kit.fontawesome.com *.typekit.net *.processonepayments.com snap.licdn.com *.assurity.com *.chasepaymentechhostedpay-var.com *.chasepaymentechhostedpay.com *.hotjar.com www.googletagmanager.com *.intercom.io js.intercomcdn.com cdn.userway.org; img-src 'self' data: *.linkedin.com p.adsymptotic.com use.typekit.net www.compulifeapi.com *.pendella.com pendella.com wq.ninjaquoter.com *.stripe.com cdn.userway.org havenlife.com *.googletagmanager.com *.google-analytics.com *.upscope.io *.intercomcdn.com static.intercomassets.com static.intercomassets.eu *.intercomcdn.eu *.intercomusercontent.com *.intercom.io *.intercom-attachments-1.com *.intercom-attachments.eu *.au.intercom-attachments.com *.intercom-attachments-2.com *.intercom-attachments-3.com *.intercom-attachments-4.com *.intercom-attachments-5.com *.intercom-attachments-6.com *.intercom-attachments-7.com *.intercom-attachments-8.com *.intercom-attachments-9.com static.au.intercomassets.com *.hotjar.com; child-src 'self' *.google.com intercom-sheets.com www.intercom-reporting.com www.youtube.com player.vimeo.com fast.wistia.net; frame-src 'self' *.processonepayments.com *.stripe.com *.chasepaymentechhostedpay-var.com *.chasepaymentechhostedpay.com testapi.assurity.com cdn.userway.org www.google.com calendly.com app.lifehappens.org *.pendella.com pendella.com intercom-sheets.com app.lifehappens.org *.upscope.io vars.hotjar.com; connect-src 'self' wss://*.intercom.io api-js.mixpanel.com ka-f.fontawesome.com *.stripe.com api.userway.org *.intercom.io *.intercomcdn.com *.intercomcdn.eu *.intercomusercontent.com *.google-analytics.com *.upscope.io wss://*.upscope.io cdn.userway.org/ cdn.linkedin.oribi.io *.hotjar.io *.hotjar.com wss://*.hotjar.com; font-src 'self' data: fonts.googleapis.com fonts.gstatic.com cdnjs.cloudflare.com ka-f.fontawesome.com js.intercomcdn.com fonts.intercomcdn.com *.pendella.com pendella.com www.compulifeapi.com use.typekit.net *.hotjar.com; form-action 'self' calendly.com intercom.help *.intercom.io; frame-ancestors 'self' *.pendella.com pendella.com www.w3schools.com *.prismhr.com *.entertimeonline.com *.saashr.com *.britehr.app *.be-brite.com *.choosemylo.com *.risk-strategies-benefitoptions.com *.getpendella.com *.termprovider.com *.thewellingtongroupllc.com *.theinsuranceloft.com *.gethealthee.com *.employsource.net *.ownerschoicebenefits.com *.cbiz.com *.execupay.com *.affordacareinsurance.com *.advanstaff.com *.simployonline.com *.ichra.shop *.wentworthfp.com *.getbritehr.com *.spirithr.com *.craneagency.com *.partnerspeo.com *.csone.com *.therichardsgrp.com *.paydayes.com *.invst.com *.rtconsultingllc.com *.explainmybenefits.com *.enrollsolutions.com *.groupmgmt.com *.enrollwithbe.com *.multikrd.com *.theworksitegroup.com *.velocity-benefits.com *.respondershealth.org *.iafffc-insurance.com *.chimienti.com *.benechoice.com *.isolvedhcm.com *.thevoluntarybenefitsshop.com *.exphrpeo.com *.health365.co *.vensure.com *.mercer.com *.mercerindigo.com mercerindigo.com *.certipay.com certipay.com; base-uri 'self';
strict-transport-security: max-age=31536000; includeSubDomains; preload
x-cache: HIT
x-cf-worker: true
x-content-type-options: nosniff
x-xss-protection: 1; mode=block; report=https://scotthelme.report-uri.com/r/d/xss/enforce
x-xss-pwnage: <script>alert('XSS');</script>
feature-policy: document-domain
permissions-policy: gyroscope=(), magnetometer=(), payment=()
referrer-policy: strict-origin-when-cross-origin
cross-origin-embedder-policy-report-only: require-corp; report-to="default"
cross-origin-opener-policy: same-origin
cross-origin-resource-policy: same-origin
cross-origin-embedder-policy: same-origin
cross-origin-window-policy: Deny
access-control-allow-headers: Origin, X-Requested-With, Content-Type, Accept
access-control-allow-origin: coveredbyvensure.com
access-control-allow-credentials: true
x-frame-options: SAMEORIGIN
set-cookie: XSRF-TOKEN=eyJpdiI6ImMwV2M0dFkvTy90U3RESmp4OUYyV1E9PSIsInZhbHVlIjoiNHRLbHVjK0lETDlYSzhsWFo1cTZmYzZuSkRMdTlyY0k0NlBMQzZvK2JqWlVib21reFE3cng3R2tSV2g2K1dTMFRiVEVjRXdqRzBaWElpTnRvUTU2NzFvTHQ3OXlKVEhiT0Uydkx6VUNrVnVqbnZhYUJIejZ0cFRvTzVsOHFOcFIiLCJtYWMiOiI2NjY0NjllNWJlZjYwZjU5ZmNhMjQyZDk5NmZlYzY0ZmJlMzZlZjBhMjViOGVhZDAxZGY3NjNjNjFkOTk0NTAwIiwidGFnIjoiIn0%3D; expires=Thu, 27 Jul 2023 13:55:02 GMT; Max-Age=7200; path=/; samesite=lax
set-cookie: pendellaapp_ses=eyJpdiI6IlQvN09BMXVRcXIyL1ZnOVJwa2FMcWc9PSIsInZhbHVlIjoieVg5eE9QVk9XUW5jUVNQUE1QQ0lyOVJzdlNLV3JnYVBid2R3TjVYYkdUNmNiTlVLR0MzRHhTMmNOVW9jK1V0bTk3SVJPRS9MdHhxeFVaT3pGdmIwbGVDVXdKZXN3cEorVTlKNTVpb21tV0lwT3ljcnVhTFVHWHFtc0s5YlM1ZTkiLCJtYWMiOiIyNGZmNTEwMzc5N2E2NDdjNDdkNjI0MDk0NjZjNDhlYjExMzQwYjBhOWYxODc2NjM3Njc4NTUwZWFlNTBlYTZmIiwidGFnIjoiIn0%3D; expires=Thu, 27 Jul 2023 13:55:02 GMT; Max-Age=7200; path=/; httponly; samesite=lax
cf-cache-status: DYNAMIC
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=4BpIffjBJLGgflo9aunjwa48Ede2174jROKChCEp3ru%2B92qEpLkKv3w68RQk2ZAm0H1GPXthl55B7DsCaNm26zz9i19RdSC7FXCUEuDYe%2F0F73RoNlF7uTJlLzPijAUD8%2BGXaT8c5eXGRZiuXhtg0TtPjA%3D%3D"}],"group":"cf-nel","max_age":604800}
nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server: cloudflare
cf-ray: 7ed4b0ec5cc80fa4-EWR
alt-svc: h3=":443"; ma=86400
|