15 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
frame-src; frame-ancestors; object-src
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Consider adding Permissions-Policy to control browser features

Performance Headers

1 headers
Connection
Performance
close

Caching Headers

1 headers
Cache-Control
Caching
no-store, must-revalidate, max-age=0

Content Headers

3 headers
Content-Language
Content
en
Content-Length
Content
6595
Content-Type
Content
text/html;charset=utf-8

Server Headers

1 headers
Server
Server
nginx/1.22.1

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
KC_RESTART=eyJhbGciOiJkaXIiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2In0..rmCb1gw0J805yPPcha951A.9uuHg4czTgRf3t4HWqpHmfI4WGGdph0lyczvxm3uutJrSv0oredn8zxCDUlF_efYUDM3C-uUiohzV8mp87MLGIjdZraWyIOC3auSO4u_tkLi_7xB5ibtOz4e6ZjoUQ2pXJ0r4Vbj9cuPanXFcELmat8UEW6qNjdxB8cQr4kRBojfRIDCv8oC--RCFCJ-5bOtub327etfUjOakB7beBs8-8jeUN9gBkeBC08p5QHJFkxmEPjrdr4cKII89ZYK7UBoQexSmGrNonoFZt2-3Fx21yFZZs6eRwPJlnrE5o3gD0gQzmfsu5K97BXF_9-xjcegPpOACRHMqoh-9oqzQy9ZY2BVSSC56ovIAk56giaPBFBJQoJMS_1xHJllamivtdt23Kx8kCEb1tDgjQw6cj4FEs2FJa09QYXdyyoA-RnBF8V-eG5C1OgiI8_F6o21X3P2M1AWlsOZSEORZYBfvd23u6JZv4SCrVtFby1NrH0SV9ezrqzhuAGIf4okGszdkbMna-ZmY-HaGW60S0AgqxOcqDdlm3LXt6grGU47l3KzA6yFVocRwNnbRCWBzt2SuznKdKjm5bch-O-l_aib-CrKun9k_3X2uD2237S4JnhztcuWrp5uAUjtVDY5Rx3CwI9ErXYktkLzxMh26GLxAgQW-ojijm1O8-VBBhIvZZRQo1vXGj1NarFWNGG5OgKLPZLrV5yJj8jpOivVf4VJCYylZmg3GHIG5i-0uTJuMpobDKwisy0xiMFBY-7ZceCmL0Beglz6CMCoV1bgZgvoQbd1BhZhF5y773_J76HtsO0Kmw-lB13PJXW-LnOXqqvF4F5idSKu4cHIOCDcvLGltwc7sgEx30-Fx-QGYMvC_u_zhEoFQFrD5wRGzGhOZXP9WUY-VpACjLZOSftC3PKYzDhmf7thbnGUmH1RGh4Jm2gqizZ3v-vE2yeef6DLGvjep6jLaPBsj_kgm3q4k8vOXNKj8cjDIaQgYhAsNoL8uMgP0Ud5kM6bnIrd4GN8eekjtGa3g7ranXWqhp1ZT07l69qsX48CS91_5kjHLYMoLgwBjrWU5oai079uZU9WneNp7hOimHZKdwQuegFKnt75vECsEgcmd2QTCgqjKAmDZBvBmj3M8IToUuNeBQJStaGDeAjcrrSz_L_09NUIFnznVa-YhCP0HH7AnXZ2K8HXOMBEa0RmHLZmFjBvHYvolteCZS_kiZUID-uokORxO6zQIm6B81yeZbVD_2moUt48oTaJwtXRREcHQASMKDLk6EXR19ILuce_ZXmxrtTUpYv0Dgkzd6_zaqAAe_oDoOaDztPttireVMEPIHDJZ_bFBOE-B0cnet9EvlIxRe1KHflFBvMxVQcB6EREbvUrEfRyaELiw6p_KVEdl0v0keuZ4Kzu9jo232pcHxeAvgmmC8ZgXj_um_FC-WleTO2nmdl2tIJjEXqKVcRMh-qVJrXPeJbEnFyyN8gDl6g7R5iJodIWow48JdBRMdi3b2heogWn1PRsBXd45fk1L7SMYEJ9IZDPst88OHZ4AdZsPz5ygWwFvBgE32u71pfDZC79jJniHo2O4Idl1KJrIBgRC8VbzC-KBsxy.bbbpTI9Kv4zR8nyuWat3_Q;Version=1;Path=/auth/realms/master/;HttpOnly;SameSite=Lax

Other Headers

2 headers
Date
Other
Sun, 01 Feb 2026 11:57:08 GMT
X-Robots-Tag
Other
none

Recommendations

Enable compression (gzip/brotli) to improve performance