HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
upgrade-insecure-requests
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Consider adding Permissions-Policy to control browser features

Performance Headers

2 headers
Connection
Performance
close
Transfer-Encoding
Performance
chunked

Caching Headers

2 headers
Cache-Control
Caching
s-maxage=36000, max-age=5
Last-Modified
Caching
Sun, 28 Dec 2025 22:23:15 GMT

Content Headers

1 headers
Content-Type
Content
text/html; charset=UTF-8

Server Headers

1 headers
Server
Server
cloudflare

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
_cfuvid=WV89.w54zT7fjvVMwhDNoiMoWrqINP2vIawG9qvMx_o-1767363223568-0.0.1.1-604800000; path=/; domain=.knowledgebase.breakoutlearning.com; HttpOnly; Secure; SameSite=None

Other Headers

16 headers
Alt-Svc
Other
h3=":443"; ma=86400
Cf-Ray
Other
9b7adbd29e484a0b-IAD
Content-Security-Policy-Report-Only
Other
script-src 'none'; connect-src 'none'; report-uri https://csp-reporting.cloudflare.com/cdn-cgi/script_monitor/report?m=3XaLyXxWZxIh.uLpVyUhUd9h0t_gXrrAGTi_M8vmkBI-1767363223-1.0.1.1-iC2INJj6G2bdBHVwQSdNaWoRUChq5MYU9D7p87N5TcAnev1VrCV2OqkETEhcVaHbCkuYR_GS7Yv3fD8KUCGWLQ9ZhfA_Pa.jZ0N7_PvnONBFO8E8CrWM5srqmBkD5f26N4oooqwPZhPgKa8wA5jPXQr8GYwlDv3vEk.hPNbH_inqLVcq8OcAKJ_gohe0uSCxY9cDDDiRXhlXN.UdA3.OCg; report-to cf-csp-endpoint
Date
Other
Fri, 02 Jan 2026 14:13:43 GMT
Edge-Cache-Tag
Other
CT-195255542135,CG-195255540049,P-39763539,MENU-190606740021,PGS-ALL,SW-3,GC-195259753800,GC-195259753801,TS-195257205347
Link
Other
<https://7052064.fs1.hubspotusercontent-na1.net/hubfs/7052064/hub_generated/module_assets/1/-107255593217/1766173943313/module_website-header.min.css>; rel=preload; as=style,<https://7052064.fs1.hubspotusercontent-na1.net/hubfs/7052064/hub_generated/module_assets/1/-153268142413/1766173944658/module_kb-search-input.min.css>; rel=preload; as=style,<https://7052064.fs1.hubspotusercontent-na1.net/hubfs/7052064/hub_generated/module_assets/1/-112598395241/1766173914079/module_kb_home_category_listing.min.css>; rel=preload; as=style
Nel
Other
{"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Report-To
Other
{"endpoints":[{"url":"https:\/\/csp-reporting.cloudflare.com\/cdn-cgi\/script_monitor\/report?m=3XaLyXxWZxIh.uLpVyUhUd9h0t_gXrrAGTi_M8vmkBI-1767363223-1.0.1.1-iC2INJj6G2bdBHVwQSdNaWoRUChq5MYU9D7p87N5TcAnev1VrCV2OqkETEhcVaHbCkuYR_GS7Yv3fD8KUCGWLQ9ZhfA_Pa.jZ0N7_PvnONBFO8E8CrWM5srqmBkD5f26N4oooqwPZhPgKa8wA5jPXQr8GYwlDv3vEk.hPNbH_inqLVcq8OcAKJ_gohe0uSCxY9cDDDiRXhlXN.UdA3.OCg"}],"group":"cf-csp-endpoint","max_age":86400}
X-Hs-Cache-Config
Other
BrowserCache-5s-EdgeCache-180s
X-Hs-Cache-Control
Other
s-maxage=36000, max-age=0
X-Hs-Cf-Cache-Status
Other
REVALIDATED
X-Hs-Cfworker-Meta
Other
{"contentType":"KNOWLEDGE_CONTENT","resolver":"PreRenderedContentResolver"}
X-Hs-Content-Id
Other
195255542135
X-Hs-Hub-Id
Other
39763539
X-Hs-Portal-Id
Other
39763539
X-Hs-Prerendered
Other
Sun, 28 Dec 2025 22:23:15 GMT

Recommendations

Enable compression (gzip/brotli) to improve performance