Open
Cached
·
just now
18
Headers
Detected Technologies from Headers
Contentsquare
Envoy
Facebook
Fastly Insights
Google Analytics
Google Conversion Tracking
Google Optimize
Google reCAPTCHA
Google Search
Google Static File Front End
Google Tag Manager
Heap
Hotjar
OneTrust
Pinterest
Reddit
ScorecardResearch (ComScore)
Sentry
Spotify
TikTok Analytics
Twitter
Varnish
Google Cloud
Envoy
Facebook
Fastly Insights
Google Analytics
Google Optimize
Google reCAPTCHA
Google Search
Google Static File Front End
Google Tag Manager
Heap
Hotjar
OneTrust
Pinterest
Reddit
ScorecardResearch (ComScore)
Sentry
Spotify
TikTok Analytics
Twitter
Varnish
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Accept-Ranges
bytes
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
accept-ranges: bytes connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
No caching headers found
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Tue, 24 Feb 2026 08:03:40 GMT
X-Cache
MISS, MISS
X-Cache-Hits
0, 0
X-Served-By
cache-nyc-kteb1890078-NYC, cache-nyc-kteb1890073-NYC
X-Spotify-Open-Index
true
X-Timer
S1771920220.468412,VS0,VE107
date: Tue, 24 Feb 2026 08:03:40 GMT via: HTTP/1.1 fringe, HTTP/2 edgeproxy, 1.1 google, 1.1 varnish x-cache: MISS, MISS x-cache-hits: 0, 0 x-envoy-upstream-service-time: 31 x-served-by: cache-nyc-kteb1890078-NYC, cache-nyc-kteb1890073-NYC x-spotify-open-index: true x-timer: S1771920220.468412,VS0,VE107
Recommendations
Enable compression (gzip/brotli) to improve performance
Add Cache-Control header to optimize caching