Open
Cached
·
just now
16
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
Content-Security-Policy
Basic
base-uri; script-src; style-src-elem; +4 more
base-uri 'self';script-src 'strict-dynamic' 'nonce-klwiHIewYf2fQtKoH46GxXGtBxpB3O68';style-src-elem 'sha256-cu8fsHifjOQhx0xopNUPdvE0GEYillVro+MwOzmE4Zo=' 'sha256-Tmq5y8yAJ/unTpx9N6W5LhQYW21ofTa1x2ES4DByAFg=' 'sha256-Rc2a7SfB50KoFAIR0X5+ul5uQbsJSujId4MzcmbUx8s=' 'sha256-qEpFNF1Fp0ubO1jN1GWZPNX0btdFLOmn1g2V0f1FnYs=' 'sha256-RbXap8DThrtn0GXWVWVLAiidfpCw+pWF6BZUhesiLg8=' 'sha256-WED0SddB76QKxvUxiNsC4yBV4q+h2VmeED+HOmw3QcE=' 'sha256-CJPT+JaP/VZGlmqOGSIvSZ7s4WH9hnAkfELvnF6pLdk=' 'sha256-8UEbNWwfRGt0BQWShmqS1bfXUsFG5gnX7KTPvl4wnK8=' 'sha256-32yG/vPEu13tQaT5V/q/1JGq8LS5XAcvWNKxWrmVbc4=' 'sha256-zEugRvDeDEgxiL8nYxezyeSYFteqIJ6dG+RROhbF2/8=' 'sha256-NGjP9FMu4ZSkfjwn7HYQQ7lDrzLQK2lv989DWs6xfRk=' 'sha256-ONFzDHhEcJeV7JXg3p3KH+z/ZUrWJXhpWMQHuesJ9yY=' fonts.googleapis.com https://app.snowcatcloud.com;object-src 'none';require-trusted-types-for 'script';upgrade-insecure-requests;report-uri https://app.snowcatcloud.com/api/csp-violation
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
Performance Headers
3 headers
Connection
Performance
close
Transfer-Encoding
Performance
chunked
Vary
Performance
X-Inertia
Caching Headers
1 headers
Cache-Control
Caching
no-cache, private
Content Headers
1 headers
Content-Type
Content
text/html; charset=UTF-8
Server Headers
1 headers
Server
Server
nginx
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
snowcat_cloud_session=eyJpdiI6InlHMFdUMGRWZ2JNQ2tjWG8yT2g0bmc9PSIsInZhbHVlIjoicWZQNHU5WEtQYUlrV01CMGtDblJQb1RQYmxVQWN5UTd2ZG1YdXRscEVjQ1Zkb0NPQjI1NlFyUkFQcjh2YWw5Nkh0WGJDWFEvd3BzN21qSUF5OEZKeHZtSWxOaXhBcXlwdW1OWWZ3VitSR0N5bmpBRVNqR3FZOCtQM29US2grQ3AiLCJtYWMiOiIxZjdjN2QzZWMwYzI1NzVhYjBhM2ExNzI2ZTcwODUxMzNjNzJiN2Y5YjQ5NWM3OGUzYzc3MGYzOTc2NDZiNmEyIiwidGFnIjoiIn0%3D; expires=Sun, 25 Jan 2026 13:48:34 GMT; Max-Age=43200; path=/; secure; httponly; samesite=lax
Other Headers
2 headers
Date
Other
Sun, 25 Jan 2026 01:48:34 GMT
Feature-Policy
Other
xr-spatial-tracking 'none'
Recommendations
Enable compression (gzip/brotli) to improve performance