Open
Cached
·
just now
26
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=63072000; includeSubDomains; preload
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Accept-Ranges
bytes
Connection
close
Vary
rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch
accept-ranges: bytes connection: close vary: rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch
Caching Headers
Age
281296
Cache-Control
public, max-age=0, must-revalidate
Etag
"53137947377fc6dba5d6295392e71568"
age: 281296 cache-control: public, max-age=0, must-revalidate etag: "53137947377fc6dba5d6295392e71568"
Content Headers
Content-Disposition
inline
Content-Length
178680
Content-Type
text/html; charset=utf-8
content-disposition: inline content-length: 178680 content-type: text/html; charset=utf-8
CORS Headers
Access-Control-Allow-Origin
*
access-control-allow-origin: *
Cookies Headers
Other Headers
Date
Mon, 04 May 2026 06:04:20 GMT
X-Matched-Path
/
X-Vercel-Enable-Rewrite-Caching
1
date: Mon, 04 May 2026 06:04:20 GMT via: 1.1 a770e75e0ebdb44f23f7a7ef20bbbffa.cloudfront.net (CloudFront) x-amz-cf-id: UIeFc-CnXq42aRwem_tVq3ya4YIKvqTVXUFZU5HA7nu9x63o27cfrQ== x-amz-cf-pop: IAD55-P1 x-cache: Miss from cloudfront x-matched-path: / x-nextjs-prerender: 1 x-nextjs-stale-time: 300 x-vercel-cache: HIT x-vercel-enable-rewrite-caching: 1 x-vercel-id: iad1::h556q-1777874660673-630cc0a37c8c
Recommendations
Enable compression (gzip/brotli) to improve performance