Open
Cached
·
just now
20
Headers
Detected Technologies from Headers
AWS CloudFront
Google AdSense
Quantum Metric
Google Tag Manager
Google Sign-In
Google reCAPTCHA
Sanity
Google DoubleClick
Google Analytics
Microsoft Advertising
DigitalOcean App Platform
Cloudflare CDN
Google Cloud Storage
Google Static File Front End
Next.js
Google API JS Client
Google Fonts
Wistia
Algolia
Osano
unpkg
Google Search
BootstrapCDN
Cloudflare
Google Cloud Functions
Facebook
Amazon S3
Pinterest
TikTok
AWS
AB Tasty
Vercel
Taboola
Kargo
YouTube
Microsoft Clarity
Sentry
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Accept-Ranges
bytes
Connection
close
Vary
rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch
accept-ranges: bytes connection: close vary: rsc, next-router-state-tree, next-router-prefetch, next-router-segment-prefetch
Caching Headers
Age
86729
Cache-Control
public, max-age=0, must-revalidate
Etag
"aac23df71b4bf61944c3e953ef2d78f6"
age: 86729 cache-control: public, max-age=0, must-revalidate etag: "aac23df71b4bf61944c3e953ef2d78f6"
Content Headers
Content-Disposition
inline
Content-Length
285066
Content-Type
text/html; charset=utf-8
content-disposition: inline content-length: 285066 content-type: text/html; charset=utf-8
CORS Headers
Access-Control-Allow-Origin
*
access-control-allow-origin: *
Cookies Headers
Other Headers
Date
Sun, 12 Apr 2026 09:22:28 GMT
X-Matched-Path
/
date: Sun, 12 Apr 2026 09:22:28 GMT x-matched-path: / x-nextjs-prerender: 1 x-nextjs-stale-time: 300 x-vercel-cache: HIT x-vercel-id: iad1::47whf-1775985748649-3abc2dba3f2e
Recommendations
Enable compression (gzip/brotli) to improve performance