Open
Cached
·
just now
13
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
Close
connection: Close
Caching Headers
No caching headers found
Content Headers
Content-Length
0
content-length: 0
Server Headers
No server headers found
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Timing-Allow-Origin
*
X-Adfox-Request-Id
16999139184320386995
X-Ads-Degradation
0.000000
X-Ads-Loadaverage
0.071429
X-Ads-Loadaverageonarrival
0.071429
X-Ads-Queuetime
0.024000
X-Yt-Request-Id
6f5e7ee9-7253984a-a3100e0f-a14ff18d
X-Yt-Trace-Id
0-1-0-0
timing-allow-origin: * x-adfox-request-id: 16999139184320386995 x-ads-degradation: 0.000000 x-ads-loadaverage: 0.071429 x-ads-loadaverageonarrival: 0.071429 x-ads-queuetime: 0.024000 x-yt-request-id: 6f5e7ee9-7253984a-a3100e0f-a14ff18d x-yt-trace-id: 0-1-0-0
Recommendations
Enable compression (gzip/brotli) to improve performance
Add Cache-Control header to optimize caching