HTTP/2 200 x-robots-tag: index, followreferrer-policy: strict-origin-when-cross-originx-permitted-cross-domain-policies: nonex-download-options: noopenorigin-agent-cluster: ?1permissions-policy: accelerometer=(), autoplay=(), browsing-topics=(), camera=(), display-capture=(), encrypted-media=(), fullscreen=(self), geolocation=(), gyroscope=(), hid=(), idle-detection=(), interest-cohort=(), magnetometer=(), microphone=(), midi=(), payment=(self "https://checkout.stripe.com" "https://billing.stripe.com"), picture-in-picture=(), publickey-credentials-get=(), screen-wake-lock=(), serial=(), sync-xhr=(), usb=(), web-share=(), xr-spatial-tracking=()cross-origin-resource-policy: same-origincross-origin-opener-policy: same-origin-allow-popupsreporting-endpoints: csp-endpoint="/api/csp_report.php"content-security-policy: default-src 'none'; script-src 'self' 'nonce-w0vyGKTTZl9ZVnGcZpMOfA' 'strict-dynamic' https://www.googletagmanager.com; style-src 'self' 'nonce-w0vyGKTTZl9ZVnGcZpMOfA' 'sha256-gNAXdvaOLK6xlkDZJGE6svIhRJUF1hfFHDKADi8VXyE='; style-src-elem 'self' 'nonce-w0vyGKTTZl9ZVnGcZpMOfA' 'sha256-gNAXdvaOLK6xlkDZJGE6svIhRJUF1hfFHDKADi8VXyE='; style-src-attr 'none'; img-src 'self' data: blob: https://*.stripe.com https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://*.analytics.google.com https://cdn.discordapp.com https://media.discordapp.net https://static-cdn.jtvnw.net https://*.jtvnw.net https://*.ttvnw.net https://*.kick.com https://files.kick.com https://*.trustpilot.com https://*.trustpilot.net; font-src 'self' data:; connect-src 'self' https://api.stripe.com https://checkout.stripe.com https://billing.stripe.com https://m.stripe.com https://m.stripe.network https://r.stripe.com https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://*.analytics.google.com; manifest-src 'self'; worker-src 'self'; frame-src 'self' https://js.stripe.com https://hooks.stripe.com https://checkout.stripe.com https://billing.stripe.com https://player.twitch.tv https://embed.twitch.tv; frame-ancestors 'self' https://copilot.microsoft.com https://*.copilot.microsoft.com https://www.bing.com https://bing.com https://chatgpt.com https://chat.openai.com https://claude.ai https://www.perplexity.ai https://perplexity.ai https://gemini.google.com https://notebooklm.google.com https://aistudio.google.com https://meta.ai https://www.meta.ai https://you.com https://www.you.com https://chat.mistral.ai https://chat.deepseek.com https://www.deepseek.com https://grok.com; object-src 'none'; base-uri 'self'; form-action 'self' https://streamwizard.de https://www.streamwizard.de https://checkout.stripe.com https://billing.stripe.com; report-uri /api/csp_report.php; report-to csp-endpoint;strict-transport-security: max-age=31536000; includeSubDomains; preloadexpires: Thu, 19 Nov 1981 08:52:00 GMTcache-control: no-store, no-cache, must-revalidatepragma: no-cacheset-cookie: __Host-streamwizard_session=a1fce12b0428f1ffd556fe40a49d48f0; path=/; secure; HttpOnly; SameSite=Laxx-content-type-options: nosniffvary: Accept-Encodingx-xss-protection: 0content-type: text/html; charset=UTF-8date: Fri, 01 May 2026 20:33:56 GMTserver: Apache