Open
Cached
·
just now
24
Headers
Detected Technologies from Headers
AWS
AWS CloudFront
Microsoft Advertising
Cloudflare CDNJS
CookieYes
Facebook
Font Awesome
GitHub
Active incidents
Google AdSense
Google Analytics
Google DoubleClick
Google reCAPTCHA
Google Search
Google Tag Manager
Hotjar
Knock AI
LaunchDarkly
LinkedIn
Microsoft Clarity
Quora
Reddit
Segment
Sentry
Twitter
YouTube
Zendesk
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000; includeSubdomains; preload
X-Frame-Options
Good
sameorigin
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
origin-when-cross-origin, strict-origin-when-cross-origin
Permissions-Policy
Present
geolocation=(self), microphone=(), camera=()
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Strengthen CSP by removing 'unsafe-eval'
Performance Headers
Connection
close
Vary
Origin
connection: close vary: Origin
Caching Headers
Cache-Control
no-cache, no-store, must-revalidate
Expires
0
Pragma
no-cache
cache-control: no-cache, no-store, must-revalidate expires: 0 pragma: no-cache
Content Headers
Content-Length
10165
Content-Type
text/html; charset=UTF-8
content-length: 10165 content-type: text/html; charset=UTF-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Tue, 21 Apr 2026 20:17:36 GMT
Request-Time
3
Trace-Id
c571749c3181ff01
X-Permitted-Cross-Domain-Policies
master-only
date: Tue, 21 Apr 2026 20:17:36 GMT request-time: 3 trace-id: c571749c3181ff01 via: 1.1 a863373015dd073e91a52d99d8ad6bfc.cloudfront.net (CloudFront) x-amz-cf-id: pD19Fx9-s6O_cIha9jHMM9Q_Rh-RTdM25VZ758QFTVCThJKzMl-O-g== x-amz-cf-pop: IAD61-P10 x-cache: Miss from cloudfront x-permitted-cross-domain-policies: master-only
Recommendations
Enable compression (gzip/brotli) to improve performance