15 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
frame-ancestors; sandbox; report-uri
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Consider adding Permissions-Policy to control browser features

Performance Headers

3 headers
Connection
Performance
keep-alive
Transfer-Encoding
Performance
chunked
Vary
Performance
rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch, Accept-Encoding

Caching Headers

2 headers
Cache-Control
Caching
max-age=0, private
Expires
Caching
-1

Content Headers

1 headers
Content-Type
Content
text/html; charset=utf-8

Server Headers

1 headers
Server
Server
ATS

CORS Headers

0 headers
No CORS headers found

Cookies Headers

0 headers
No cookies headers found

Other Headers

4 headers
Date
Other
Thu, 20 Nov 2025 08:20:35 GMT
Link
Other
<https://s.yimg.com/xe/next-app-sports/_next/static/css/d189794a09241bcf.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/a7285945bc805873.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/3b5eb413dbfdb956.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/cfdb28cae1f7437e.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/89a0a1c342e025c3.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/3b9f5b68a3d444c6.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/885711c96f586c04.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/00fbb83e64cb3601.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/f0ec07defc3c9a38.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/e366ae05199826d6.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/996bf4923680afd7.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/e3ca9b4bfb0a2840.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/8673fab5b8ff6911.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/02a60692bbb7a7fc.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/a7f33b5c75bed9df.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/0971ce1cad387f97.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/8177bab15cf74496.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/29d12ab2bc5c8819.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/baf184e8317821b1.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/fd81774ab1603c07.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/cb60e167879f1f5e.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/8e72fe85a06b8f00.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/1956219351d22259.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/2110597d1e7ba23c.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/5e3ae2d907711af3.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/b5e1ac7306e0162a.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/7b73e60c97f31cc9.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/ce52c25bb7cfe2e5.css>; rel=preload; as="style"; crossorigin="anonymous", <https://s.yimg.com/xe/next-app-sports/_next/static/css/4498c13954696e54.css>; rel=preload; as="style"; crossorigin="anonymous"
X-Deployment-Id
Other
sha-2d55ae0
X-Envoy-Upstream-Service-Time
Other
165

Recommendations

Enable compression (gzip/brotli) to improve performance

Analysis completed in 575ms