Cached · just now
19 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000 ; includeSubDomains
Content-Security-Policy
Weak
frame-ancestors Analyze
Content-Security-Policy-Report-Only
Basic
default-src; script-src; style-src; +10 more Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
camera=(self "https://e0k754.acquire.io"), microphone=(self "https://e0k754.acquire.io"), usb=()
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking

Performance Headers

Connection
Performance
close, Transfer-Encoding
Transfer-Encoding
Performance
chunked

Caching Headers

Cache-Control
Caching
public, max-age=10800, s-maxage=300, stale-while-revalidate=10800, stale-if-error=604800
Etag
Caching
"d57a22eb9282d983f217a8ee6a9e9f771c28b248d9fdc108ac2265c5c978cf5c"

Content Headers

Content-Type
Content
text/html

Server Headers

No server headers found

CORS Headers

No CORS headers found

Cookies Headers

No cookies headers found

Other Headers

Akamai-Grn
Other
0.8d9b3e17.1771821697.2374adf3
Date
Other
Mon, 23 Feb 2026 04:41:37 GMT
Reporting-Endpoints
Other
csp-endpoint="https://www.audi.nl/api/csp-report"
X-Age
Other
3611
X-Amz-Cf-Id
Other
T1A59AmDJmWh_ii8TQU0m3vdmoYAAXATLH7Cf8xENRJV27-VTLI-PQ==
X-Amz-Cf-Pop
Other
IAD61-P7
X-Amzn-Requestid
Other
10089427-5a53-4682-b58b-20d6d4b35c7c
X-Amzn-Trace-Id
Other
Root=1-699bcc64-51066bcd0489c5985b0c4ebc;Parent=4cf091fd1b70cca2;Sampled=0;Lineage=1:34a40f7e:0

Recommendations

Enable compression (gzip/brotli) to improve performance