Open
Cached
·
just now
24
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, Accept-Encoding
connection: close transfer-encoding: chunked vary: rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, Accept-Encoding
Caching Headers
Age
443
Cache-Control
public, s-maxage=600, stale-while-revalidate=60, max-age=600
age: 443 cache-control: public, s-maxage=600, stale-while-revalidate=60, max-age=600
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Mon, 11 May 2026 17:11:04 GMT
X-Deployment-Uid
6a01e46d977233af2c381ab6
X-Environment-Uid
68511a733e357ac61440f83d
X-Org-Uid
bltb983c97aae052c5b
X-Project-Uid
68511a733e357ac61440f836
cf-cache-status: HIT cf-ray: 9fa2ccff6b340841-IAD date: Mon, 11 May 2026 17:11:04 GMT x-amzn-requestid: 693e1a6c-f9cd-4d63-9548-3a1ebb353a33 x-amzn-trace-id: Root=1-6a0204a9-7b5c2de300d069b07ab10196;Parent=43c719436f14b67b;Sampled=0;Lineage=1:18aed653:0 x-deployment-uid: 6a01e46d977233af2c381ab6 x-environment-uid: 68511a733e357ac61440f83d x-nextjs-cache: STALE x-nextjs-prerender: 1, 1 x-nextjs-stale-time: 300 x-org-uid: bltb983c97aae052c5b x-project-uid: 68511a733e357ac61440f836
Recommendations
Enable compression (gzip/brotli) to improve performance