Open
Cached
·
just now
17
Headers
Detected Technologies from Headers
AWS CloudFront
YouTube
Adobe Marketo
Adyen
Bing
Microsoft Advertising
Cloudflare Web Analytics
Facebook
Google Analytics
Google DoubleClick
Google Optimize
Google Search
Google Static File Front End
Google Tag Manager
MNTN
OneTrust
Qualified
Qualtrics
Reddit
SlideShare
The Trade Desk
TrustArc
Upsellit
Vercel
Vimeo
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=15724800; includeSubDomains
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
connection: close
Caching Headers
Age
4
Cache-Control
public, s-maxage=3600, stale-while-revalidate=59
Etag
"zsa7h0wq3tihhu"
age: 4 cache-control: public, s-maxage=3600, stale-while-revalidate=59 etag: "zsa7h0wq3tihhu"
Content Headers
Content-Length
862646
Content-Type
text/html; charset=utf-8
content-length: 862646 content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Mon, 27 Apr 2026 23:44:53 GMT
X-Matched-Path
/[[...path]]
X-Sc-Rewrite
/_site_Grasshopper/
date: Mon, 27 Apr 2026 23:44:53 GMT x-matched-path: /[[...path]] x-sc-rewrite: /_site_Grasshopper/ x-vercel-cache: HIT x-vercel-id: iad1::iad1::mhb4h-1777333497614-8aaea209ef75
Recommendations
Enable compression (gzip/brotli) to improve performance