20 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Add Content-Security-Policy header to prevent XSS attacks
  • Consider adding Permissions-Policy to control browser features

Performance Headers

1 headers
Connection
Performance
close

Caching Headers

1 headers
Cache-Control
Caching
max-age=1

Content Headers

2 headers
Content-Length
Content
3822
Content-Type
Content
text/html; charset=utf-8

Server Headers

0 headers
No server headers found

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
pd_status_page_version=d33ba59b6fdd38cce58b6978fec3ed6fed2258a7; Domain=status.desmos.com; Secure; HttpOnly; Max-Age=3600; SameSite=Strict

Other Headers

10 headers
Date
Other
Sun, 28 Dec 2025 21:28:37 GMT
Pdt-Layout-Version
Other
d33ba59b6fdd38cce58b6978fec3ed6fed2258a7
Via
Other
1.1 b6d3c8159ae3de02f9219eb71093bbe2.cloudfront.net (CloudFront), 1.1 1275684897401ce19f68f1bc42ca48ae.cloudfront.net (CloudFront)
X-Amz-Cf-Id
Other
V3rfSMef8E6fhUzFRq6_9uAM9C7QBh6VBxDnGahiOTSDxvzTn37ZgQ==
X-Amz-Cf-Pop
Other
IAD61-P4
X-Amzn-Requestid
Other
3d3474f3-99a1-4f4f-87e0-e2cb9d24bc24
X-Amzn-Trace-Id
Other
Root=1-6951a105-33b9052344dbe32d4dea1346;Parent=2fc36c713f251761;Sampled=0;Lineage=1:82b455b2:0
X-Cache
Other
Miss from cloudfront
X-Generated-At
Other
Sun, 28 Dec 2025 21:28:37 GMT
X-Generated-In
Other
68 ms

Recommendations

Enable compression (gzip/brotli) to improve performance

Analysis completed in 502ms