Open
Cached
·
just now
25
Headers
Detected Technologies from Headers
Cloudflare NEL Monitoring
Clerk
Google Tag Manager
Google reCAPTCHA
Fullstory
HubSpot Forms
Factors.AI
Google Analytics
noembed
Iubenda
Segment
Cloudflare CDN
Datadog
Google Static File Front End
Next.js
Google Fonts
Entri
unpkg
Google Search
Adobe Marketo
Plausible Analytics
Demandbase
Qualified
Amazon S3
StackAdapt
OneTrust
Usercentrics
AWS
Vercel
IP-API
Vector
YouTube
BigMarker
Sentry
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Present
camera=*, microphone=*, geolocation=(); +1 more
Recommendations
- • Strengthen CSP by removing 'unsafe-eval'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, accept-encoding
connection: close transfer-encoding: chunked vary: rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, accept-encoding
Caching Headers
Age
0
Cache-Control
private, no-cache, no-store, max-age=0, must-revalidate
age: 0 cache-control: private, no-cache, no-store, max-age=0, must-revalidate
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
Server Headers
server: cloudflare x-powered-by: Next.js
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Fri, 24 Apr 2026 12:51:46 GMT
Link
URL
/
rel=preconnect
crossorigin
Nel
Report-To Group
cf-nel
max-age: 1w
success: 1.0%
Report-To
Other
X-Matched-Path
/
cf-cache-status: DYNAMIC
cf-ray: 9f153dc74e6edfc2-IAD
date: Fri, 24 Apr 2026 12:51:46 GMT
link: </>; rel=preconnect; crossorigin=""
nel: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=g9SJmREDP68wtkK3LtZ2BN%2B%2BlSFnyw0ieqv9v4vXwys1au9bZuIP8iaaUxLtXA2C%2BQQHRVfk%2BYt9r5CtZNfvSH8S5g3YRv2LIepL2ol2itbmapCQC%2Bu0z3jqpuoy2TCJvTgZ2Fd6"}],"group":"cf-nel","max_age":604800}
x-clerk-auth-reason: session-token-and-uat-missing
x-clerk-auth-status: signed-out
x-matched-path: /
x-vercel-cache: MISS
x-vercel-id: iad1::iad1::dzf7f-1777035106509-2564d424f220
Recommendations
Enable compression (gzip/brotli) to improve performance
Consider removing X-Powered-By header to hide server technology