30 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Basic
script-src; frame-ancestors; object-src; +1 more Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Present
interest-cohort=()
Recommendations
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)

Performance Headers

Connection
Performance
close
Transfer-Encoding
Performance
chunked
Vary
Performance
Origin, Accept-Encoding

Caching Headers

Cache-Control
Caching
no-cache, no-store, no-transform, must-revalidate, private, no-cache, no-store, max-age=0, must-revalidate
Expires
Caching
Thu, 01 Jan 1970 00:00:00 GMT

Content Headers

Content-Type
Content
text/html;charset=utf-8

Server Headers

Server
Server
cloudflare

CORS Headers

No CORS headers found

Cookies Headers

Set-Cookie
Cookies

Other Headers

Cf-Cache-Status
Other
DYNAMIC
Cf-Ray
Other
9f8e6593a8b4c978-IAD
Date
Other
Sat, 09 May 2026 05:45:15 GMT
Document-Policy
Other
js-profiling
Feature-Policy
Other
interest-cohort=()
Httplogrequestid
Other
0b41fb85-531f-4225-9f0e-719db8a24eb4, 33788bb4-85e2-4604-ae64-8c51bcf9bdc9
Via
Other
1.1 145bb9cba9e12350510f02ee9ab6ca22.cloudfront.net (CloudFront), 1.1 e20259e84d7d881ed453b1f0e4f9a4c6.cloudfront.net (CloudFront)
X-Amz-Apigw-Id
Other
dFR8kFDEIAMEgrg=
X-Amz-Cf-Id
Other
iBBR-PUl0vIj2hwHIeJTtxdcDR0YyHjzNG5D-HNQg0NPQX_XQCseXA==
X-Amz-Cf-Pop
Other
IAD12-P1, IAD55-P4
X-Amzn-Remapped-Connection
Other
keep-alive
X-Amzn-Remapped-Date
Other
Sat, 09 May 2026 05:45:14 GMT
X-Amzn-Requestid
Other
ec622f77-0b70-4e06-9b75-47e0d5da85f5
X-Cache
Other
Miss from cloudfront
X-Cvent-Version
Other
3.19.51
X-Middleware-Rewrite
Other
/event/d092e9be-76eb-4954-9f64-f36a714aeebf/regProcessStep1?environment=P2
X-Request-Id
Other
0b41fb85-531f-4225-9f0e-719db8a24eb4, 33788bb4-85e2-4604-ae64-8c51bcf9bdc9

Recommendations

Enable compression (gzip/brotli) to improve performance