Open
Cached
·
just now
28
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000; preload
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Accept-Ranges
bytes
Connection
close
Vary
Accept-Encoding
accept-ranges: bytes connection: close vary: Accept-Encoding
Caching Headers
Age
0
Cache-Control
public, max-age=900, s-maxage=900, stale-while-revalidate=3600, stale-if-error=3600, no-cache="Set-Cookie"
Etag
W/"3bc0a-u/eB4AN7ovUqYckTO0kk57qWGNI"
age: 0 cache-control: public, max-age=900, s-maxage=900, stale-while-revalidate=3600, stale-if-error=3600, no-cache="Set-Cookie" etag: W/"3bc0a-u/eB4AN7ovUqYckTO0kk57qWGNI"
Content Headers
Content-Length
244746
Content-Type
text/html; charset=utf-8
content-length: 244746 content-type: text/html; charset=utf-8
CORS Headers
Access-Control-Allow-Origin
*
access-control-allow-origin: *
Cookies Headers
Other Headers
Atl-Request-Id
6e6811ac-49e8-4f84-af3b-6c89cd12136e
Atl-Traceid
6e6811ac49e84f84af3b6c89cd12136e
Date
Mon, 04 May 2026 05:57:55 GMT
Nel
Report-To Group
endpoint-1
max-age: 10m
failure: 1.0%
include subdomains
Server-Timing
cdn-upstream-layer;desc="REC",cdn-upstream-dns;dur=0,cdn-upstream-connect;dur=0,cdn-upstream-fbl;dur=537,atl-edge;dur=535,atl-edge-internal;dur=8,atl-edge-upstream;dur=528,atl-edge-pop;desc="aws-us-east-1",cdn-cache-miss,cdn-pop;desc="IAD61-P9",cdn-rid;desc="WMGxC2ZpC-QjPIcRoRpkrDO-dU4zWbDLVXJd1DRpKtILWGtn4pKIqg==",cdn-downstream-fbl;dur=548
X-Cache-Status
CACHEABLE
atl-request-id: 6e6811ac-49e8-4f84-af3b-6c89cd12136e
atl-traceid: 6e6811ac49e84f84af3b6c89cd12136e
date: Mon, 04 May 2026 05:57:55 GMT
nel: {"failure_fraction": 0.01, "include_subdomains": true, "max_age": 600, "report_to": "endpoint-1"}
report-to: {"endpoints": [{"url": "https://dz8aopenkvv6s.cloudfront.net"}], "group": "endpoint-1", "include_subdomains": true, "max_age": 600}
server-timing: cdn-upstream-layer;desc="REC",cdn-upstream-dns;dur=0,cdn-upstream-connect;dur=0,cdn-upstream-fbl;dur=537,atl-edge;dur=535,atl-edge-internal;dur=8,atl-edge-upstream;dur=528,atl-edge-pop;desc="aws-us-east-1",cdn-cache-miss,cdn-pop;desc="IAD61-P9",cdn-rid;desc="WMGxC2ZpC-QjPIcRoRpkrDO-dU4zWbDLVXJd1DRpKtILWGtn4pKIqg==",cdn-downstream-fbl;dur=548
via: 1.1 52d16d838d27 (Varnish/8.0), 1.1 afd508e8725b6457725f7b20366832e6.cloudfront.net (CloudFront)
x-amz-cf-id: WMGxC2ZpC-QjPIcRoRpkrDO-dU4zWbDLVXJd1DRpKtILWGtn4pKIqg==
x-amz-cf-pop: IAD61-P9
x-cache: Miss from cloudfront
x-cache-status: CACHEABLE
x-envoy-attempt-count: 1
x-varnish: 95018546
Recommendations
Enable compression (gzip/brotli) to improve performance