13 Headers

Detected Technologies from Headers

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

Performance Headers

Connection
Performance
close

Caching Headers

No caching headers found

Content Headers

Content-Length
Content
103
Content-Type
Content
text/html

Server Headers

No server headers found

CORS Headers

No CORS headers found

Cookies Headers

No cookies headers found

Other Headers

Allow
Other
OPTIONS, TRACE, GET, HEAD, POST
Date
Other
Wed, 01 Apr 2026 21:15:45 GMT
Public
Other
OPTIONS,TRACE,GET,HEAD,POST
X-Azure-Ref
Other
20260401T211545Z-18649bfdfc4zbv2whC1BL164pn0000000f70000000002hk1
X-Cache
Other
CONFIG_NOCACHE
X-Ms-Gateway-Requestid
Other
bd2c3bca-6db5-450c-9271-8af507ad448d

Recommendations

Enable compression (gzip/brotli) to improve performance

Add Cache-Control header to optimize caching