Open
Cached
·
just now
12
Headers
Detected Technologies from Headers
YouTube
Akamai
Apache
BootstrapCDN
Cloudflare CDNJS
Oracle Eloqua
Facebook
Google AdSense
Google Analytics
Google API JS Client
Google DoubleClick
Google Fonts
Google Maps
Google Optimize
Google reCAPTCHA
Google Search
Google Static File Front End
Google Tag Manager
Hotjar
Instagram
LinkedIn
OneTrust
Salesforce Cloud
Salesforce Sites
ServiceNow
Stripe
Uptime.com
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000; includeSubdomains;
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
connection: close
Caching Headers
No caching headers found
Content Headers
Content-Length
17376
Content-Type
text/html; charset=UTF-8
content-length: 17376 content-type: text/html; charset=UTF-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Thu, 14 May 2026 14:00:11 GMT
date: Thu, 14 May 2026 14:00:11 GMT
Recommendations
Enable compression (gzip/brotli) to improve performance
Add Cache-Control header to optimize caching