Open
Cached
·
just now
15
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=315360000
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
connection: close
Caching Headers
Cache-Control
private
cache-control: private
Content Headers
Content-Length
7728
Content-Type
text/html; charset=utf-8
content-length: 7728 content-type: text/html; charset=utf-8
Server Headers
Server
meddbase
server: meddbase
CORS Headers
Access-Control-Allow-Headers
x-session-id, x-token
access-control-allow-headers: x-session-id, x-token
Cookies Headers
Other Headers
Date
Mon, 11 May 2026 08:28:27 GMT
X-Correlation-Id
333eaa0e-6507-4382-863d-50e4d696f8f8
date: Mon, 11 May 2026 08:28:27 GMT x-correlation-id: 333eaa0e-6507-4382-863d-50e4d696f8f8
Recommendations
Enable compression (gzip/brotli) to improve performance