Open
Cached
·
3h ago
20
Headers
Detected Technologies from Headers
AWS CloudFront
Ashby
Active incidents
Google Tag Manager
Reddit
HubSpot Forms
Google DoubleClick
AdRoll
Google Analytics
Microsoft Advertising
Cloudflare CDN
Active incidents
Greenhouse
Typeform
Calendly
Google API JS Client
Google Fonts
Wistia
Twitter
LinkedIn
HubSpot Analytics
Adobe Marketo
Demandbase
Facebook
Amazon S3
OneTrust
NitroPack
Cloudflare CDNJS
Active incidents
AWS
jQuery
TechTarget
HubSpot
YouTube
Font Awesome
Sentry
jsDelivr
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
"max-age=31536000; includeSubDomains; preload" env=HTTPS
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding, Accept-Encoding, Accept-Encoding, Accept-Encoding,Cookie
connection: close transfer-encoding: chunked vary: Accept-Encoding, Accept-Encoding, Accept-Encoding, Accept-Encoding,Cookie
Caching Headers
Cache-Control
max-age=600, must-revalidate
cache-control: max-age=600, must-revalidate
Content Headers
Content-Type
text/html; charset=UTF-8
content-type: text/html; charset=UTF-8
CORS Headers
Access-Control-Allow-Origin
*
access-control-allow-origin: *
Cookies Headers
Other Headers
Alt-Svc
h3=":443"; ma=86400
Date
Tue, 28 Apr 2026 21:15:17 GMT
X-Cache
HIT: 13
X-Cache-Group
normal
X-Cacheable
SHORT
alt-svc: h3=":443"; ma=86400 cf-cache-status: DYNAMIC cf-ray: 9f3914dbfdfad46d-IAD date: Tue, 28 Apr 2026 21:15:17 GMT x-cache: HIT: 13 x-cache-group: normal x-cacheable: SHORT
Recommendations
Enable compression (gzip/brotli) to improve performance