Cached · just now
18 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Consider adding Permissions-Policy to control browser features

Performance Headers

1 headers
Connection
Performance
close

Caching Headers

2 headers
Cache-Control
Caching
max-age=0, private, must-revalidate
Etag
Caching
W/"ee1595a80f6a45d1805c056ff40bab4e"

Content Headers

2 headers
Content-Length
Content
15194
Content-Type
Content
text/html; charset=utf-8

Server Headers

2 headers
Server
Server
nginx/1.18.0
X-Runtime
Server
0.292470

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
_DreamIn_session=1fou8ohD3ACO6w1Lxe4Ee%2BgBDjKpJWEezU71pwNcMKlViXPGLSdLjSOHx4DS%2BWWiSwMEuJiiv%2BqNTLmXtVV8dnqkwDJfSiDwkivmsfBYgs4GQJIySyH6aI2hMIHFRB%2F76Nf2aXT7iVy8MtQSbvRuLbdQgU%2FmDDNd9K8A4UH00Q8qjuBIFLO8HaALudQ11z4KZQQRGLOQi0QJXqW1Blr%2F7gtP7ZgXAIYV6Ww%2BSQ4aLE%2Bs1DCCR71QJZ7CUn8YLYFY4gQmS1SkEqOIZGEhUalVXUE1HXsc%2BHCug1ggii9eUx98WYINGk2ex1LKCmylXpA73SFQ9sce%2B3qGNPQrkHUDgltktQrlcM1T--0J%2FpZ1LsNpc%2BDLsy--uhxMcl3mH4TzN%2FeuMXsZYA%3D%3D; domain=.cio-uk.de; path=/; HttpOnly; SameSite=Lax

Other Headers

6 headers
Date
Other
Thu, 15 Jan 2026 23:00:45 GMT
Link
Other
</assets/application-9c1f3abf5fa3be82aa6df40cf5cff97af4a2fad7aabf888af1495abb3b4e84f0.css>; rel=preload; as=style; nopush,</assets/independent_pages/external_standard-e709e4256751087cebffbfd81590fbc815279e7d231742278548b52ae2931f54.css>; rel=preload; as=style; nopush,</assets/application-6dd62194c1d61c5d53100be83831a08afcba895a593084d2a4d6a19101e1d7b0.js>; rel=preload; as=script; nopush,</packs/js/main_pack-331801b2b481e1145de1.js>; rel=preload; as=script; nopush,</packs/css/main_pack-f6c54ad2.css>; rel=preload; as=style; nopush
X-Download-Options
Other
noopen
X-Permitted-Cross-Domain-Policies
Other
none
X-Request-Id
Other
ae4be0bf-932b-4005-a21f-90f64d42c9ea
X-Robots-Tag
Other
noindex

Recommendations

Enable compression (gzip/brotli) to improve performance