HTTP/1.1 301 Moved Permanently
Date: Fri, 16 Apr 2021 08:11:26 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Cache-Control: max-age=3600
Expires: Fri, 16 Apr 2021 09:11:26 GMT
Location: https://www.bmr.ca/
cf-request-id: 097b5532d700001556b7371000000001
Server: cloudflare
CF-RAY: 640bf1648ecf1556-EWR
HTTP/2 302
date: Fri, 16 Apr 2021 08:11:26 GMT
content-type: text/html; charset=UTF-8
set-cookie: __cfduid=d33ce69033608a718d6bc6374f3fcedc91618560686; expires=Sun, 16-May-21 08:11:26 GMT; path=/; domain=.bmr.ca; HttpOnly; SameSite=Lax
set-cookie: PHPSESSID=1s2np2b2n8q9h3cl4ope92boib; expires=Fri, 16-Apr-2021 09:11:26 GMT; Max-Age=3600; path=/; domain=www.bmr.ca; HttpOnly
expires: Thu, 19 Nov 1981 08:52:00 GMT
cache-control: no-store, no-cache, must-revalidate
pragma: no-cache
set-cookie: groupbmr_store_need_to_be_set=1; expires=Sat, 16-Apr-2022 08:11:26 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_store_number=278; expires=Sat, 16-Apr-2022 08:11:26 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_notification_banner_closed=0; expires=Sat, 16-Apr-2022 08:11:26 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_store_is_default=1; expires=Sat, 16-Apr-2022 08:11:26 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_gtm_customerPersonalStore=%7B%22storeNumber%22%3A%22950000%22%2C%22storeName%22%3A%22BMR%22%2C%22storeZone%22%3A%22N%5C%2FA%22%7D; expires=Sat, 16-Apr-2022 08:11:26 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
location: /fr/
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
cf-cache-status: DYNAMIC
cf-request-id: 097b553301000055232faa8000000001
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
server: cloudflare
cf-ray: 640bf164c9eb5523-EWR
HTTP/2 302
date: Fri, 16 Apr 2021 08:11:27 GMT
content-type: text/html
set-cookie: __cfduid=d33ce69033608a718d6bc6374f3fcedc91618560686; expires=Sun, 16-May-21 08:11:26 GMT; path=/; domain=.bmr.ca; HttpOnly; SameSite=Lax
location: https://www.bmr.ca/fr
cf-cache-status: DYNAMIC
cf-request-id: 097b553388000055234a1f9000000001
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
server: cloudflare
cf-ray: 640bf165aa915523-EWR
HTTP/2 200
date: Fri, 16 Apr 2021 08:11:27 GMT
content-type: text/html; charset=UTF-8
set-cookie: __cfduid=df247bac223d57c82a9f79488712b8a701618560687; expires=Sun, 16-May-21 08:11:27 GMT; path=/; domain=.bmr.ca; HttpOnly; SameSite=Lax
vary: Accept-Encoding
set-cookie: PHPSESSID=dff4uvaej37qltkjt8aliut83c; expires=Fri, 16-Apr-2021 09:11:27 GMT; Max-Age=3600; path=/; domain=www.bmr.ca; HttpOnly
set-cookie: groupbmr_store_need_to_be_set=1; expires=Sat, 16-Apr-2022 08:11:27 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_store_number=278; expires=Sat, 16-Apr-2022 08:11:27 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_notification_banner_closed=0; expires=Sat, 16-Apr-2022 08:11:27 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_store_is_default=1; expires=Sat, 16-Apr-2022 08:11:27 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
set-cookie: groupbmr_gtm_customerPersonalStore=%7B%22storeNumber%22%3A%22950000%22%2C%22storeName%22%3A%22BMR%22%2C%22storeZone%22%3A%22N%5C%2FA%22%7D; expires=Sat, 16-Apr-2022 08:11:27 GMT; Max-Age=31536000; path=/; domain=.www.bmr.ca; SameSite=Lax
pragma: no-cache
cache-control: max-age=0, must-revalidate, no-cache, no-store
expires: Thu, 16 Apr 2020 02:03:27 GMT
report-to: {"group":"report-endpoint","max_age":10886400,"endpoints":[{"url":"\/pub\/csp-report.php"}]}
content-security-policy-report-only: font-src 'self' data: 'self' criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com *.trackedlink.net cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com polyfill.io *.algolia.net fonts.gstatic.com joinhoney.com cdn.joinhoney.com 'self' 'unsafe-inline'; form-action secure.authorize.net test.authorize.net 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.googletagmanager.com *.dotdigital-pages.com *.dotdigital.com cdn.dnky.co webchat.dotdigital.com s7.addthis.com imgs.signifyd.com amc.demdex.net 'self' 'self' data: criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com *.trackedlink.net cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com polyfill.io *.algolia.net reebee.com www.reebee.com *.moneris.com h.online-metrix.net *.issuu.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.paypalobjects.com t.paypal.com www.paypal.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com data: 6127557.global.siteimproveanalytics.io amcglobal.sc.omtrdc.net cdn.klarna.com cm.everesttech.net dpm.demdex.net img.youtube.com imgs.signifyd.com landofcoder.com mageside.com maps.gstatic.com maps.googleapis.com *.online-metrix.net www.bmr.ca www.mageworx.com 'self' 'unsafe-inline' criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com *.trackedlink.net cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com polyfill.io *.algolia.net www.google.ro www.google.be www.google.co.in www.google.fr www.google.dz adserve.atedra.com *.gstatic.com *.siteimprove.com *.siteimproveanalytics.io 'self' 'unsafe-inline'; script-src assets.adobedtm.com secure.authorize.net test.authorize.net www.paypalobjects.com js.braintreegateway.com www.paypal.com www.sandbox.paypal.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com www.youtube.com www.googletagmanager.com www.google-analytics.com polyfill.io *.trackedlink.net *.trackedweb.net *.dotdigital-pages.com cdn.dnky.co api.comapi.com webchat.dotdigital.com 'self' data: 'unsafe-inline' data: 'unsafe-eval' data: s7.addthis.com maps.googleapis.com z.moatads.com v1.addthisedge.com m.addthis.com r2-t.trackedlink.net imgs.signifyd.com cdn-scripts.signifyd.com www.google.com 'self' 'unsafe-inline' 'unsafe-eval' criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com *.algolia.net www.reebee.com reebee.com www.gstatic.com *.gstatic.com siteimproveanalytics.com bam.nr-data.net r2.dotmailer-surveys.com static.hotjar.com 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com cdn.dnky.co webchat.dotdigital.com fonts.googleapis.com 'self' data: 'unsafe-inline' data: 'self' 'unsafe-inline' criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com *.trackedlink.net cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com polyfill.io *.algolia.net 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src *.algolia.net *.trackedlink.net *.trackedweb.net *.dotdigital-pages.com api.comapi.com webchat.dotdigital.com m.addthis.com *.algolianet.com imgs.signifyd.com amcglobal.sc.omtrdc.net dpm.demdex.net 'self' 'self' data: criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com polyfill.io ca.api4load.com 'self' 'unsafe-inline'; child-src http: https: blob: 'self' 'unsafe-inline'; default-src 'self' 'self' data: criteo.net criteo.com *.doubleclick.net twitter.com ads-twitter.com *.trackedlink.net cloudfront.net xg4ken.com bing.com getcandid.com amazonaws.com *.googletagmanager.com shopbot.ca pinimg.com pinterest.com adnxs.com yimg.com ytimg.com hotjar.com amazon-adsystem.com *.addthis.com *.addthisedge.com *.googleapis.com *.google-analytics.com *.googleadservices.com adroll.com jsdelivr.net typekit.net adsrvr.org rubiconproject.com casalemedia.com openx.net pubmatic.com *.facebook.net *.facebook.com www.bmr.ca www.unimat.ca www.agrizone.co www.lashop.com *.bootstrapcdn.com *.signifyd.com *.google.com *.google.ca *.youtube.com *.dotmailer.com *.dotmailer-surveys.com *.paypalobjects.com *.paypal.com *.newrelic.com *.algolianet.com polyfill.io *.algolia.net 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; report-uri /pub/csp-report.php; report-to report-endpoint;
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
cf-cache-status: DYNAMIC
cf-request-id: 097b5533c00000552361968000000001
expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
server: cloudflare
cf-ray: 640bf1660ad55523-EWR
|