Open
Cached
·
just now
20
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000; preload
X-Frame-Options
Present
*
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Present
camera=(), microphone=(), geolocation=(); +1 more
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
Performance Headers
Connection
close
Vary
Accept-Encoding
connection: close vary: Accept-Encoding
Caching Headers
Age
2023
Cache-Control
public,max-age=0,must-revalidate
Etag
"lql3bu8jqu3o25"
age: 2023 cache-control: public,max-age=0,must-revalidate etag: "lql3bu8jqu3o25"
Content Headers
Content-Length
171209
Content-Type
text/html; charset=utf-8
content-length: 171209 content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Thu, 09 Apr 2026 21:57:28 GMT
X-Dns-Prefetch-Control
on
X-Nf-Request-Id
01KNT403F9MNH0GD6XZV8C03JY
cache-status: "Netlify Durable"; hit; ttl=-1123, "Next.js"; hit, "Netlify Edge"; fwd=miss date: Thu, 09 Apr 2026 21:57:28 GMT netlify-vary: query=__nextDataReq|_rsc,header=x-nextjs-data|x-next-debug-logging|next-router-prefetch|next-router-segment-prefetch|next-router-state-tree|next-url|rsc|accept-encoding,language=en|de,cookie=__prerender_bypass|__next_preview_data|NEXT_LOCALE x-dns-prefetch-control: on x-nextjs-date: Thu, 09 Apr 2026 21:26:28 GMT x-nf-request-id: 01KNT403F9MNH0GD6XZV8C03JY
Recommendations
Enable compression (gzip/brotli) to improve performance