Open
Cached
·
just now
17
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=86400
Content-Security-Policy
Good
default-src; font-src; style-src; +3 more
default-src *.ability.abb *.abb.com *.azurewebsites.net *.b2clogin.com *.bing.com *.virtualearth.net *.microsoft.com dc.services.visualstudio.com openweathermap.org *.azure-api.net *.windows.net *.edgecom.ai *.edgecom.energy data: blob:; font-src *.ability.abb *.abb.com *.microsoft.com *.gstatic.com data:; style-src *.ability.abb *.abb.com *.microsoft.com *.googleapis.com *.bing.com *.edgecom.ai cdn.edgecom.ai data: 'unsafe-inline'; script-src 'self' *.ability.abb *.abb.com *.azurewebsites.net *.b2clogin.com *.bing.com *.virtualearth.net *.microsoft.com dc.services.visualstudio.com openweathermap.org *.azure-api.net *.windows.net *.edgecom.ai *.edgecom.energy cdn.edgecom.ai data: blob: 'sha256-bORecY3nASUUQVyv0qtpa4rGkeHNb0EEQXxR43mfWRg=' 'sha256-qOOp2C1jupmRmnW45n0SALJT4TURP9P9LDqDy4YXoYc=' 'sha256-tKw3+k11F4uAHi7WKgJdCsBARYo8Q1GxAcPYZtZ+xtc=' 'sha256-flGbeQJkJMR43Bty80frEyfJ0B3CRYlzuv4mkMp9AW0=' 'sha256-qwCBdqx3FF45LYOSeH6ByQwlkqVLFZDYd5x0+VbA5Go=' 'sha256-z1zwKai5z/q/frG1ZWaavkfF/BeGc5A70dpvv9ZJ7oM=' 'sha256-+HanseYjSEP12Eh68FWt3UL+YBjU9OLymrCMDwioXZQ=' 'sha256-R1NqI+uV8PHY8Atu9UrEVTzAXQbdzkkmDat9yfCDKW0=' 'sha256-Se9D2hyE7DSzmKqrQ+jeutFoVZWWKXx1hunJ6COceb8='; object-src 'none'; frame-ancestors 'self';
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin
Permissions-Policy
Present
geolocation=(), midi=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(self), payment=()
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Strengthen CSP by removing 'unsafe-eval'
Performance Headers
1 headers
Connection
Performance
close
Caching Headers
5 headers
Cache-Control
Caching
no-store, no-cache, must-revalidate
Etag
Caching
"0ebaa797358dc1:0"
Expires
Caching
0
Last-Modified
Caching
Tue, 18 Nov 2025 10:09:50 GMT
Pragma
Caching
no-cache
Content Headers
2 headers
Content-Length
Content
10579
Content-Type
Content
text/html
Server Headers
1 headers
Server
Server
CORS Headers
0 headers
No CORS headers found
Cookies Headers
0 headers
No cookies headers found
Other Headers
1 headers
Date
Other
Fri, 23 Jan 2026 14:09:57 GMT
Recommendations
Enable compression (gzip/brotli) to improve performance