Open
Cached
·
just now
22
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Weak
upgrade-insecure-requests
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Consider adding Permissions-Policy to control browser features
Performance Headers
2 headers
Connection
Performance
Transfer-Encoding
Transfer-Encoding
Performance
chunked
Caching Headers
4 headers
Cache-Control
Caching
private, max-age=60
Etag
Caching
W/"775d9-jz0gEV0Fvj8SQOAMo0Uhruzwbwo"
Expires
Caching
Sat, 17 Jan 2026 01:11:31 GMT
Last-Modified
Caching
Sat, 17 Jan 2026 01:10:31 GMT
Content Headers
1 headers
Content-Type
Content
text/html; charset=utf-8
Server Headers
1 headers
Server
Server
openresty
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
datadome=gezSGuT76O_eWYAKEnMpN85m~YI1c_CloHZlcux94OC2XWcjLCeF7GOUgu3vp28qoiUce2zaU_w2zAQSAlvrdOZEBI8D7Kn5OXID7sgE3inHSyRweo63h5j8xbZ05O9X; Max-Age=31536000; Domain=.cleveland.com; Path=/; Secure; SameSite=Lax
Other Headers
11 headers
Accept-Ch
Other
Sec-CH-UA,Sec-CH-UA-Mobile,Sec-CH-UA-Platform,Sec-CH-UA-Arch,Sec-CH-UA-Full-Version-List,Sec-CH-UA-Model,Sec-CH-Device-Memory
Date
Other
Sat, 17 Jan 2026 01:10:31 GMT
Server-Timing
Other
ak_p; desc="1768612231100_399898349_4072541776_17351_308888_0_21_-";dur=1
X-Akamai-Transformed
Other
9 87885 0 pmb=mRUM,2
X-Arc-Edgecontroller
Other
1.3.0
X-Arc-Pb-Edge
Other
0
X-Arc-Pb-Mx-Id
Other
00000000
X-Arc-Pb-Request-Id
Other
aaef4a44-5b9d-4f6f-8a51-73f24278f9a2
X-Arc-Request-Id
Other
0.edf6d517.1768612231.f2be0e50
X-Arc-Ttl
Other
-1
X-Datadome
Other
protected
Recommendations
Enable compression (gzip/brotli) to improve performance