Open
Cached
·
just now
13
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
1 headers
Connection
Performance
close
Caching Headers
1 headers
Cache-Control
Caching
no-store
Content Headers
2 headers
Content-Length
Content
2059
Content-Type
Content
text/html;charset=UTF-8
Server Headers
1 headers
Server
Server
Tengine/Aserver
CORS Headers
1 headers
Access-Control-Allow-Credentials
Cors
true
Cookies Headers
1 headers
Set-Cookie
Cookies
x5secdata=xfAukQDDmNDBt11Qo4PyNaf2zvgwvaRR0xzVv8GUjY1zqMi96kc7rGjB9TwwOxCPhKyT2p9tRNXr41YhvFE-LYVq6COxbaba_BT5wuRSF2fjkK0RZfuefr8q0yqFxqpD1MOVowoVvUC1up0GjPW89y199QzpxsFXUaoAv11g6-zmZo7yYxGhfdLfq1ruHHO11z6d-RWZWbjMXKDD5-mjiJgSu7GVq3Vqf6unvuwsK55icjfkK52b28az80gVFy5Qg7C_JaVxw-E2nrd7Nb6wcDWS-L2GEpyIpRQ0OextC1SAZDS9ur3BWGztnFpKKD7UGBJd3ELBIEKO5GrmSXm8y9f0DbMjVj_50AbSDa_27d_VxFSMQ0ciwHqvEK5F6da-QhrJZjadIrsIYyrPSAWbJzSAYJfvTZK0ZxR6YykSUuQtw4ACgaXiKmcNnr6mHpPc-p0-SRGye-VvVa1xkIUwj1KoAX2JEK5G5fH86qnNqdQrEMZ9unmNbUSrFIDD7cV2lloIXrR68_uqv9p7cEsX6T3D5jkHrQNLBG3wjY10GSD0eouFkOEPZiRM_yDuK7yXclL7uHWQ3JNCGx5Ct9CUUMsCnuzRhvAQG9liOND3Kh92klkwsqMSoa-LDVc0W3AbJtWci4reOEJNNx_13hwFDkr28bk5JbPk9sRr3oYhz858Z-0iCWL0FY4c6GVbq34Y1-jRKFrLUSt1JhwYOn5_91q4geFn9KU5TQ_VhypxK6-7cW0h6wpdpqNUSmWwYUFI5v_qaCEIs9pJs3sU7sadeJA8-zxqLUt1LIrIweexgdGsfyWuOftUpOleiQf5AIcw2Y__bx__www.aliexpress.com%2f; Max-Age=20; Path=/; Domain=aliexpress.com
Other Headers
5 headers
Alt-Svc
Other
h3=":443"; ma=93600
Bxpunish
Other
1
Date
Other
Sat, 10 Jan 2026 22:25:56 GMT
Eagleeye-Traceid
Other
2103212517680839563732380e78c4
Timing-Allow-Origin
Other
*
Recommendations
Enable compression (gzip/brotli) to improve performance