Open
Cached
·
just now
22
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000; includeSubdomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Vary
Origin
connection: close vary: Origin
Caching Headers
Cache-Control
max-age=0, private, must-revalidate
Etag
W/"0a89f025a25bb0a495d8e14dbd4e104e"
cache-control: max-age=0, private, must-revalidate etag: W/"0a89f025a25bb0a495d8e14dbd4e104e"
Content Headers
Content-Length
11456
Content-Type
text/html; charset=utf-8
content-length: 11456 content-type: text/html; charset=utf-8
Server Headers
Server
Apple
X-Runtime
0.013265
server: Apple x-runtime: 0.013265
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Asrs
seedportal2-86df4d4b94-ctsmv
Date
Wed, 22 Apr 2026 15:31:37 GMT
Link
rel=preload
as=style
nopush
rel=preload
as=style
nopush
rel=preload
as=script
nopush
X-B3-Traceid
15d10d2c2692f522
X-Download-Options
noopen
X-Permitted-Cross-Domain-Policies
none
X-Request-Id
d611f071-e937-4289-a606-ab7a19be2866
asrs: seedportal2-86df4d4b94-ctsmv date: Wed, 22 Apr 2026 15:31:37 GMT link: <https://appleseedcdn.apple.com/sp/assets/application-17a5a17530104d09ead8ad5815474fa9e492640e4b1f5a390c944687389e19bb.css>; rel=preload; as=style; nopush,<https://www.apple.com/wss/fonts?families=SF+Pro,v3|SF+Pro+Icons,v3>; rel=preload; as=style; nopush,<https://appleseedcdn.apple.com/sp/assets/application-893738b5e474c34035bcb6fc13978b55b52d9fac068a83e6db163b8ea13721e4.js>; rel=preload; as=script; nopush x-b3-traceid: 15d10d2c2692f522 x-download-options: noopen x-permitted-cross-domain-policies: none x-request-id: d611f071-e937-4289-a606-ab7a19be2866
Recommendations
Enable compression (gzip/brotli) to improve performance