Open
Cached
·
just now
27
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=7776000000; includeSubDomains
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Significantly strengthen CSP directives
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Consider adding Permissions-Policy to control browser features
Performance Headers
2 headers
Connection
Performance
keep-alive
Transfer-Encoding
Performance
chunked
Caching Headers
1 headers
Cache-Control
Caching
no-cache, max-age=0, no-store, must-revalidate
Content Headers
1 headers
Content-Type
Content
text/html; charset=utf-8
Server Headers
1 headers
Server
Server
cloudflare
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
_cfuvid=2r35emBWQor1w6I4GylaqYHyhqD1kiGMh06C1hFeMPA-1762482271879-0.0.1.1-604800000; path=/; domain=.shein.com; HttpOnly; Secure; SameSite=None
Other Headers
16 headers
Cachekey
Other
https://us.shein.com::/::?cdn_rsite=cf&ref=www&rep=dir&ret=us
Cf-Cache-Status
Other
MISS
Cf-Ray
Other
99a95ff639505985-IAD
Date
Other
Fri, 07 Nov 2025 02:24:31 GMT
Header-Cmdb-Name
Other
SheinPC_uswest3_prod_azure
Header-Cmdb-Sname
Other
shein-pc-uswest3-prod-azure
Server-Timing
Other
g;dur=47
Via-Shein-Gateway
Other
c-shein-pc
X-Ad-Flag-Update
Other
8FkZa3NuCnoO+IBsqSDbVYIjAJ+rKVCv5/AvkV51i6yZ0k+h6+rK67aH0c1E5efGgWYq61YJe9rvWC5xPj7ZVVYoP3i9GVpBfVkWfa8EsrsGa2KgaixOSZmJfGKy6YI874yU0pb2l85B3RSMhSMlbQ==
X-Anti
Other
MjE0REUxRkZfNzdBOF84ODE0X0QzfDE3NjI0ODIyNzE3OTV8RDJfRDY0NjUwMEI2MTMz
X-Content-Security-Policy
Other
frame-ancestors *.shein.com https://www.shein.com.hk https://www.shein.com.vn https://www.shein.com.mx https://www.shein.co.uk https://www.shein.tw https://www.shein.se https://co.shein.com https://www.shein.com.co
X-Dns-Prefetch-Control
Other
on
X-Download-Options
Other
noopen
X-Gw-Traceid
Other
53986e906dd7de53
X-Tracer-Name
Other
/config_index
X-Webkit-Csp
Other
frame-ancestors *.shein.com https://www.shein.com.hk https://www.shein.com.vn https://www.shein.com.mx https://www.shein.co.uk https://www.shein.tw https://www.shein.se https://co.shein.com https://www.shein.com.co
Recommendations
Enable compression (gzip/brotli) to improve performance
Analysis completed in 998ms