travala.com Review

TitletagDescriptiontaglanguage
Book Hotels, Flights, Tours & Activities with Crypto on Travala.com English
Alexarank
59176
Ip adress172.66.42.218Nameserverzara.ns.cloudflare.com
will.ns.cloudflare.com
Status code200
robots.txt
 N/A
HTTP/1.1 301 Moved Permanently
Date: Mon, 25 Aug 2025 02:21:21 GMT
Content-Type: text/html
Content-Length: 167
Connection: keep-alive
Cache-Control: max-age=3600
Expires: Mon, 25 Aug 2025 03:21:21 GMT
Location: https://travala.com/
Vary: Accept-Encoding
Server-Timing: cfOrigin;dur=0,cfEdge;dur=27
expect-ct: max-age=86400, enforce
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block
Strict-Transport-Security: max-age=31536000; includeSubDomains
Referrer-Policy: strict-origin-when-cross-origin, no-referrer-when-downgrade, strict-origin
X-Content-Type-Options: nosniff
Server: cloudflare
CF-RAY: 97479d909af4d758-NRT
alt-svc: h3=":443"; ma=86400

HTTP/1.1 301 Moved Permanently
Date: Mon, 25 Aug 2025 02:21:21 GMT
Content-Type: text/html
Content-Length: 167
Connection: keep-alive
Cache-Control: max-age=3600
Expires: Mon, 25 Aug 2025 03:21:21 GMT
Location: https://www.travala.com/
Vary: Accept-Encoding
Server-Timing: cfOrigin;dur=0,cfEdge;dur=47
expect-ct: max-age=86400, enforce
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block
Strict-Transport-Security: max-age=31536000; includeSubDomains
Referrer-Policy: strict-origin-when-cross-origin, no-referrer-when-downgrade, strict-origin
X-Content-Type-Options: nosniff
Server: cloudflare
CF-RAY: 97479d90fe40b92b-NRT
alt-svc: h3=":443"; ma=86400

HTTP/1.1 200 OK
Date: Mon, 25 Aug 2025 02:21:22 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
Content-Encoding: br
x-powered-by: Next.js
Cache-Control: private, no-cache, no-store, max-age=0, must-revalidate
vary: Accept-Encoding
content-security-policy: default-src 'self' blob: data: ws: wss: *.clarity.ms *.adnxs.com *.adform.net *.googletagmanager.com *.redditstatic.com *.reddit.com *.transak.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com *.amazonaws.com *.onetrust.com *.sentry.io *.binance.cloud *.binance.org google.com.sg cdn.linkedin.oribi.io px.ads.linkedin.com *.walletconnect.com *.walletconnect.org *.web3modal.com *.cloudflare-eth.com cloudflare-eth.com *.rpc.ankr.com rpc.ankr.com osano.com *.osano.com *.bnbstatic.com *.commonservice.io *.hotjar.io *.fullstory.com widget-mediator.zopim.com *.zopim.com *.bootstrapcdn.com *.zdassets.com zendesk.com *.zendesk.com simpleswap.io *.simpleswap.io *.changelly.com *.moonpay.io *.simplex-affiliates.com *.travelbybit.com *.trustyou.com *.hotjar.com *.googleadservices.com chimpstatic.com *.chimpstatic.com *.mouseflow.com *.collect.igodigital.com *.igodigital.com *.livechatinc.com frstre.com *.tapfiliate.com *.cloudflare.com *.doubleclick.net googleads.g.doubleclick.net *.kakao.com *.crypto.com *.stripe.com *.trustpilot.com *.google-analytics.com wss://*.travala.com ws://*.travala.com *.coingate.com coingate.com fonts.gstatic.com *.googleapis.com *.facebook.com *.google.com *.travala.com *.paypal.com; connect-src 'self' blob: data: *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com *; img-src blob: 'self' data: * *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com unpkg.com *.unpkg.com *.cloudflare.com *.trustpilot.com *.travala.com *.googleapis.com *.google.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com; font-src 'self' data: blob: * *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com; frame-src 'self' * *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.recaptcha.net *.clarity.ms *.adform.net *.adrsbl.io *.transak.com *.visualwebsiteoptimizer.com dev.visualwebsiteoptimizer.com *.vwo.com app.vwo.com *.onetrust.com *.cookielaw.org osano.com *.osano.com *.commonservice.io *.googleanalytics.com *.google.com *.googleoptimize.com *.licdn.com *.quantcount.com *.quantserve.com *.twitter.com *.ads-twitter.com *.redditstatic.com *.fullstory.com static.cloudflareinsights.com *.changelly.com *.zdassets.com *.bnbstatic.com *.simplex.com *.simplex-affiliates.com *.trustyou.com *.doubleclick.net googleads.g.doubleclick.net frstre.com *.hotjar.com *.googleadservices.com chimpstatic.com *.chimpstatic.com *.mouseflow.com *.igodigital.com http://514003226.collect.igodigital.com *.livechatinc.com *.tapfiliate.com *.kakao.com *.crypto.com *.stripe.com *.microsoftonline-p.com *.trustpilot.com *.paypal.com *.paypalobjects.com *.googletagmanager.com *.google-analytics.com *.googleapis.com *.travala.com *.jquery.com *.google.com *.facebook.net *.gstatic.com cdnjs.cloudflare.com *.zendesk.com; worker-src 'self' blob: ;
cf-cache-status: DYNAMIC
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfOrigin;dur=1114,cfEdge;dur=125
expect-ct: max-age=86400, enforce
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block
Strict-Transport-Security: max-age=31536000; includeSubDomains
Referrer-Policy: strict-origin-when-cross-origin, no-referrer-when-downgrade, strict-origin
X-Content-Type-Options: nosniff
Server: cloudflare
CF-RAY: 97479d91a931d3f7-KIX
alt-svc: h3=":443"; ma=86400

iframe