Open
Cached
·
just now
17
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
2 headers
Connection
Performance
close
Vary
Performance
X-Inertia
Caching Headers
1 headers
Cache-Control
Caching
no-cache, private
Content Headers
2 headers
Content-Length
Content
139187
Content-Type
Content
text/html; charset=UTF-8
Server Headers
1 headers
Server
Server
Caddy
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
xcloud_session=eyJpdiI6IkxDZXdwQ0pMSFBPMXVYcnprWHFTQlE9PSIsInZhbHVlIjoiVEQ1dUxMeTVDOGNOWnVhWmY3STl3UmxLQjRXemxVaFVzNmtaby9URFJYVVVNZ0hwZzdQbXl6SVlNNVE3SlkvalA2MVhaaEtwU1VQWnRFZ1k1NHNxWjkvUGhURTlFeWlvSXk5TjhIVEx0VDVmYkMrek52ZUdZaEdmWThsaTF5MjEiLCJtYWMiOiIyMGUwOTA0M2EwNzI1NzA2Y2Y5MTQzYmI3NzdkYTc1OWNlYTdmOGYyZGFlNmI1M2IxOGYzMjE1YWFlOTdiNDA3IiwidGFnIjoiIn0%3D; expires=Sun, 18 Jan 2026 03:40:34 GMT; Max-Age=86400; path=/; httponly; samesite=lax
Other Headers
10 headers
Alt-Svc
Other
h3=":443"; ma=2592000
Date
Other
Sat, 17 Jan 2026 03:40:34 GMT
Via
Other
1.1 1e15ba17f0383336cb0d5dad38d54b64.cloudfront.net (CloudFront)
X-Amz-Apigw-Id
Other
XT2r9EF5SQ0ELAA=
X-Amz-Cf-Id
Other
IGbyGsvqkCcM9QV1CMryyuCAEqWrqnh2LhPbcxb0R2CUELt5YOxYhg==
X-Amz-Cf-Pop
Other
SIN2-P5
X-Amzn-Remapped-Date
Other
Sat, 17 Jan 2026 03:40:34 GMT
X-Amzn-Requestid
Other
2cbe5c47-9c26-4876-b9bd-0184dcfee279
X-Amzn-Trace-Id
Other
Root=1-696b04b2-47f254495c8f11e81f9d2cba;Parent=5fbee643ead0d855;Sampled=0;Lineage=1:dcaee417:0
X-Cache
Other
Miss from cloudfront
Recommendations
Enable compression (gzip/brotli) to improve performance