Open
Cached
·
just now
23
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000; preload;
Content-Security-Policy
Weak
upgrade-insecure-requests
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
Performance Headers
3 headers
Connection
Performance
close
Transfer-Encoding
Performance
chunked
Vary
Performance
accept-encoding
Caching Headers
4 headers
Age
Caching
4197379
Cache-Control
Caching
public, max-age=0, s-maxage=31536000
Etag
Caching
W/"b0af208673ea1ce32014be60122ad030"
Last-Modified
Caching
Wed, 12 Nov 2025 19:32:11 GMT
Content Headers
1 headers
Content-Type
Content
text/html
Server Headers
1 headers
Server
Server
cloudflare
CORS Headers
0 headers
No CORS headers found
Cookies Headers
0 headers
No cookies headers found
Other Headers
10 headers
Cf-Cache-Status
Other
DYNAMIC
Cf-Ray
Other
9b68cc1a0eb4a504-IAD
Date
Other
Wed, 31 Dec 2025 09:37:16 GMT
Nel
Other
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Report-To
Other
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=Eoev9snncyqR78U0Pr544WX9hpyiuewYFAfXJWSwf6wAc%2BH18SQzf6PdvWgASA2LeP3bOpSx%2FKvLu28m50zPw5oYJvhpM2nbqbD46F8mrjerNHfTvrb3S%2Fw4ISnjMylKjMM%3D"}],"group":"cf-nel","max_age":604800}
Server-Timing
Other
cfL4;desc="?proto=TCP&rtt=834&min_rtt=814&rtt_var=265&sent=5&recv=7&lost=0&retrans=0&sent_bytes=2824&recv_bytes=607&delivery_rate=4470588&cwnd=252&unsent_bytes=0&cid=dde5d25fe2474338&ts=245&x=0"
Via
Other
1.1 6a91ddfdf36644f1344da228258d9082.cloudfront.net (CloudFront)
X-Amz-Cf-Id
Other
SQiTRntUj1WBXfmX-qIVaG-dPQr8BJWKgqBlu8SMeiO_QuO2Y6VK5A==
X-Amz-Cf-Pop
Other
IAD61-P10
X-Cache
Other
Hit from cloudfront
Recommendations
Enable compression (gzip/brotli) to improve performance