Open
Cached
·
7h ago
24
Headers
Detected Technologies from Headers
AWS CloudFront
Chromatic
Facebook
Figma
Google AdSense
Google Analytics
Google DoubleClick
Google Fonts
Google Search
Google Tag Manager
HubSpot
HubSpot Analytics
HubSpot Forms
Intercom
IP-API
jsDelivr
LinkedIn
Mailchimp
Microsoft Clarity
Netlify
PostHog
RevenueHero
Segment
Sentry
Stripe
Usercentrics
Vector
YouTube
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
no-referrer,strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
Age
1
Cache-Control
private,no-cache,no-store,max-age=0,must-revalidate
Etag
"kgqngx1yoe3tlg"
age: 1 cache-control: private,no-cache,no-store,max-age=0,must-revalidate etag: "kgqngx1yoe3tlg"
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Mon, 27 Apr 2026 19:41:31 GMT
X-Dns-Prefetch-Control
off
X-Download-Options
noopen
X-Nf-Request-Id
01KQ87C3754XWFM13HMEK5BDB2
X-Permitted-Cross-Domain-Policies
none
X-Request-Id
Root=1-69efbbea-351f86361c7fda510c2bbe93
cache-status: "Netlify Durable"; fwd=bypass, "Netlify Edge"; fwd=miss date: Mon, 27 Apr 2026 19:41:31 GMT netlify-vary: query=__nextDataReq|_rsc,header=x-nextjs-data|x-next-debug-logging|next-router-prefetch|next-router-segment-prefetch|next-router-state-tree|next-url|rsc|accept-encoding,cookie=__prerender_bypass|__next_preview_data x-dns-prefetch-control: off x-download-options: noopen x-nf-request-id: 01KQ87C3754XWFM13HMEK5BDB2 x-permitted-cross-domain-policies: none x-request-id: Root=1-69efbbea-351f86361c7fda510c2bbe93
Recommendations
Enable compression (gzip/brotli) to improve performance