Open
Cached
·
just now
29
Headers
Detected Technologies from Headers
Cloudflare NEL Monitoring
YouTube
AWS
BootstrapCDN
Cloudflare CDN
Criteo
DMCA.com
Facebook
Google AdSense
Google Analytics
Google API JS Client
Google DoubleClick
Google Fonts
Google Maps
Google Pay
Google Search
Google Static File Front End
Google Sign-In
Google Tag Manager
Google Translate
Instagram
New Relic
TikTok Analytics
Varnish
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
Age
4721
Cache-Control
no-store, no-cache, must-revalidate
age: 4721 cache-control: no-store, no-cache, must-revalidate
Content Headers
Content-Type
text/html; charset=UTF-8
content-type: text/html; charset=UTF-8
CORS Headers
Access-Control-Allow-Methods
POST, PUT, GET, OPTIONS
access-control-allow-methods: POST, PUT, GET, OPTIONS
Cookies Headers
Other Headers
Date
Sun, 22 Feb 2026 07:31:18 GMT
Nel
{"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
X-Hypernode
latest
X-Turpentine-Cache
1
X-Varnish-Currency
X-Varnish-Esi-Access
X-Varnish-Esi-Method
X-Varnish-Hits
489
X-Varnish-Host
www.hsnstore.com
X-Varnish-Set-Cookie
PHPSESSID=g7lsqqent3ie8h8skv7vmm1tnh; expires=Sun, 22-Feb-2026 21:12:34 GMT; Max-Age=54000; path=/; domain=www.hsnstore.com; secure; HttpOnly; SameSite=Lax
X-Varnish-Store
X-Varnish-Url
/
cf-cache-status: DYNAMIC
cf-ray: 9d1cc8794fbad6d9-IAD
date: Sun, 22 Feb 2026 07:31:18 GMT
nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
report-to: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=bdlPg5UyZGoEUasSx6LyBN7VHjs8Yq66ZLgTqB0uXhq5zZEm0nig%2BdBr0GvfpNt8HW0S3AmgDA5Oewf%2Bsb0F4kZfbN54P01uOGKJZo1Ing%3D%3D"}]}
via: 1.1 varnish-v4
x-hypernode: latest
x-turpentine-cache: 1
x-varnish: 244627355 246354055
x-varnish-currency:
x-varnish-esi-access:
x-varnish-esi-method:
x-varnish-hits: 489
x-varnish-host: www.hsnstore.com
x-varnish-set-cookie: PHPSESSID=g7lsqqent3ie8h8skv7vmm1tnh; expires=Sun, 22-Feb-2026 21:12:34 GMT; Max-Age=54000; path=/; domain=www.hsnstore.com; secure; HttpOnly; SameSite=Lax
x-varnish-store:
x-varnish-url: /
Recommendations
Enable compression (gzip/brotli) to improve performance