15 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Present
ALLOWALL
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

Performance Headers

1 headers
Connection
Performance
close

Caching Headers

3 headers
Cache-Control
Caching
no-store, no-cache, must-revalidate
Expires
Caching
Thu, 19 Nov 1981 08:52:00 GMT
Pragma
Caching
no-cache

Content Headers

2 headers
Content-Length
Content
0
Content-Type
Content
text/html; charset=UTF-8

Server Headers

0 headers
No server headers found

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
auth0_transient_0=%7B%22tag%22%3A%229rioEuV%2B0R7canSrkSXmTQ%3D%3D%22%2C%22iv%22%3A%22aWwGyK0PC%2BM0O7F%2B%22%2C%22data%22%3A%2258880a0hispCDKHWKkTq3WSchJ1KXxikAViPCxiUq5h9v38y7Zl8V4bYySzW%5C%2F3lIC%2BC6oQAbp7X7qbNNL7gepI%2BEXmcZ%5C%2FxCL0bNgVAqCkWmW1QNGdjrUBhf1raNcIDqXeYCSx7WLUuwq0xGE3rZm0XyZOMVQH31o1jGSF9xIM6rLzGcMDJOxnO3vOs69M4RSWpHHPvXLybzUtTK35QOux4VVj7gB38UzVm184%2BVaKCsS9oeCjnyL7c8gK3LSvyi6IxMsCJAlwe%2B8KmD7BSerTSzS%2BP9gLtZV1PtVW6QaJ6t9BcJfqvheco7%5C%2F%22%7D; path=/; HttpOnly; SameSite=Lax

Other Headers

4 headers
Date
Other
Thu, 01 Jan 2026 17:07:33 GMT
Location
Other
https://auth-dev.iadvize.com/authorize?state=8ea74b588fb34c96659bda1766346836&client_id=FXBomQgCCVtkYIvqqI52nekyD2i3FEpw&audience=https%3A%2F%2Fapi-dev.eu.iadvize.com%2F&redirect_uri=https%3A%2F%2Fstaging.iadvize.com%2Fadmin%2Flogin&scope=openid%20profile%20email&response_mode=query&response_type=code&nonce=4ebee3140ba6b93570ea88eb68085c9c&code_challenge=vxSVsuH_NI52xexWvnuqOajNEKZ800At_5rrH8mMlEY&code_challenge_method=S256
Status
Other
302 Found
Via
Other
0.0 Caddy

Recommendations

Enable compression (gzip/brotli) to improve performance