Open
Cached
·
just now
21
Headers
Detected Technologies from Headers
AWS API Gateway
AWS CloudFront
YouTube
Auth0
Rive
Google Maps
Ably
Google Tag Manager
Sanity
ChurnZero
Google Translate
UserSnap
HubSpot Forms
Google DoubleClick
Google Analytics
Recurly
Pusher
Datadog
Google Static File Front End
Google API JS Client
Google Fonts
Wistia
Transcend
Loom
LinkedIn
HubSpot Analytics
unpkg
Google Search
Facebook
Amazon S3
Heap
Cloudflare CDNJS
AWS
Active incidents
Vercel
Vimeo
Google Optimize
HubSpot
Intercom
Sentry
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Accept-Ranges
bytes
Connection
close
accept-ranges: bytes connection: close
Caching Headers
Age
9319
Cache-Control
no-store
Etag
"bae3c2c54464545db345fb86bd854e0c"
Last-Modified
Tue, 12 May 2026 22:42:43 GMT
age: 9319 cache-control: no-store etag: "bae3c2c54464545db345fb86bd854e0c" last-modified: Tue, 12 May 2026 22:42:43 GMT
Content Headers
Content-Disposition
inline
Content-Length
12872
Content-Type
text/html; charset=utf-8
content-disposition: inline content-length: 12872 content-type: text/html; charset=utf-8
CORS Headers
Access-Control-Allow-Origin
*
access-control-allow-origin: *
Cookies Headers
Other Headers
Date
Wed, 13 May 2026 01:18:03 GMT
date: Wed, 13 May 2026 01:18:03 GMT
report-to: {"group":"default","max_age":1800,"endpoints":[{"url":"https://csp-reports.wealth.com"}],"include_subdomains":true}
x-vercel-cache: HIT
x-vercel-id: iad1::bdncf-1778635083271-7435a606b45f
Recommendations
Enable compression (gzip/brotli) to improve performance