Open
Cached
·
just now
3
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
connection: close
Caching Headers
No caching headers found
Content Headers
No content headers found
Server Headers
No server headers found
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Fri, 02 Oct 2026 15:33:00 GMT
X-Msedge-Ref
Ref A: 1A5F84CA5DC24B4DAFF8426A3E2A59EA Ref B: BL2AA2030102005 Ref C: 2026-10-02T15:33:01Z
date: Fri, 02 Oct 2026 15:33:00 GMT x-msedge-ref: Ref A: 1A5F84CA5DC24B4DAFF8426A3E2A59EA Ref B: BL2AA2030102005 Ref C: 2026-10-02T15:33:01Z
Recommendations
Enable compression (gzip/brotli) to improve performance
Add Cache-Control header to optimize caching