Cached · just now
18 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Consider adding Permissions-Policy to control browser features

Performance Headers

1 headers
Connection
Performance
close

Caching Headers

2 headers
Cache-Control
Caching
max-age=0, private, must-revalidate
Etag
Caching
W/"198c046fe69803c6fae4f87b142318ca"

Content Headers

2 headers
Content-Length
Content
22640
Content-Type
Content
text/html; charset=utf-8

Server Headers

2 headers
Server
Server
nginx/1.18.0
X-Runtime
Server
0.123225

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
_DreamIn_session=F7luzy%2FbWVMVuEcQw%2BmtkhRsRXqQ2%2FUVG9DfEoRRQSYkm9ni1Ci9IiXPHKh3ahIFjuZo21px63oO2dpU04VLgYi2P5cxvirDlQRVTCtH0kCPEJP9qMwnjFjfr8yTxLKW9KkZQLD%2BwGjv%2F639JT5%2Bm%2B6I4bNhe7GAEEKMVZKmRN0Yq6vCNBRtOXRCCeHvDD%2BmGc1%2BaYVL6NQdW6oJBs2G8SBJnfV7%2BBS%2BfFEn7h4z8D07ZVcrDKIZ0Af%2FsA7CWqD7x6A54Nv4UifuJQpS0ms5Bb1ZD6emjPJG1QhJ4dUIOQP1M2Tpt40uweJ1cmczcYErtSLkM3bn4nNP%2FMAO8X0DuArGtaL142Wy--6eFZr%2FVnF2zrD5yW--9xa9%2FN2mGH3GiFXpvkLjlQ%3D%3D; domain=.partner-studie.de; path=/; HttpOnly; SameSite=Lax

Other Headers

6 headers
Date
Other
Sat, 17 Jan 2026 08:46:20 GMT
Link
Other
</assets/application-9c1f3abf5fa3be82aa6df40cf5cff97af4a2fad7aabf888af1495abb3b4e84f0.css>; rel=preload; as=style; nopush,</assets/independent_pages/external_standard-e709e4256751087cebffbfd81590fbc815279e7d231742278548b52ae2931f54.css>; rel=preload; as=style; nopush,</assets/application-6dd62194c1d61c5d53100be83831a08afcba895a593084d2a4d6a19101e1d7b0.js>; rel=preload; as=script; nopush,</packs/js/main_pack-331801b2b481e1145de1.js>; rel=preload; as=script; nopush,</packs/css/main_pack-f6c54ad2.css>; rel=preload; as=style; nopush
X-Download-Options
Other
noopen
X-Permitted-Cross-Domain-Policies
Other
none
X-Request-Id
Other
0690bc21-46c5-4e50-8af7-a90292332f76
X-Robots-Tag
Other
noindex

Recommendations

Enable compression (gzip/brotli) to improve performance