Open
Cached
·
just now
21
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=63072000; includeSubDomains
Content-Security-Policy
Weak
connect-src
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Significantly strengthen CSP directives
- • Consider adding Permissions-Policy to control browser features
Performance Headers
1 headers
Connection
Performance
close
Caching Headers
3 headers
Cache-Control
Caching
private, no-store
Etag
Caching
W/"2450db2029d185247b33cecf45f2dadc"
Pragma
Caching
no-cache
Content Headers
2 headers
Content-Length
Content
10264
Content-Type
Content
text/html; charset=utf-8
Server Headers
2 headers
Server
Server
nginx
X-Runtime
Server
0.018744
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
_sight_glass_session=sGnyzCZjaEQI5ZsjHxCQ%2F7afiCsfqda%2BLi6AX5fSn1e%2F%2FVGbvm5prNvgx5GJ5srC9bqcO8zOic8GAEriuCEg6RY1qRWr3XBSz2nUgzDenmoyav032TrQ%2FfmIm%2F1rySAx0i3EuDqofzv3bBT4U9IOAvjL7PbZX3t7QDHfRKx%2BdV1A9h9KYSP6vUwUg964%2B2vTGE%2FdIjYvu8PKrMtjBqN5ZnVJ1GNig2%2BPLnAF1rLsKh%2Ffkz4IZ4yxUuZ6v6C0CqOvYHHyo4T%2FULDCn67hGG49hTucqRS9ghG0kXg5AXP2Nq9twoX8xVlc1zsnIdHBzHZkhFw%3D--DgK3udfMWA4uVkaL--2Py%2FA7yWRTyInBvaaXbu6w%3D%3D; path=/; expires=Sun, 28 Dec 2025 09:01:06 GMT; secure; HttpOnly; SameSite=Lax
Other Headers
6 headers
Date
Other
Sun, 28 Dec 2025 05:01:06 GMT
Link
Other
</assets/application-6df6f1f7dee810791cb0cddca439ca66eac5ce7f2ad8e246fee340beebffa7b7.css>; rel=preload; as=style; nopush,</assets/application-56d15a4d65b27fbdbe10fe20af3c94fe6e81a649674d3075dddcc7cb22521d8a.js>; rel=preload; as=script; nopush,</assets/webpacked-868e1cec9af4d7b6fd592c76e0256e989e7c6dc3d7ee270106ca78508f1d6c58.js>; rel=preload; as=script; nopush
Server-Timing
Other
ak_p; desc="1766898065792_400219669_1697510014_40088_27628_0_193_-";dur=1
X-Akamai-Transformed
Other
9 5562 0 pmb=mRUM,2
X-Permitted-Cross-Domain-Policies
Other
none
X-Request-Id
Other
c128cadc-fa13-40bb-93c8-f2f84d936edc
Recommendations
Enable compression (gzip/brotli) to improve performance
Analysis completed in 700ms