Open
Cached
·
just now
27
Headers
Detected Technologies from Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=7889238
Content-Security-Policy
Weak
block-all-mixed-content; frame-ancestors; upgrade-insecure-requests
Analyze
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Significantly strengthen CSP directives
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
accept-encoding
connection: close transfer-encoding: chunked vary: accept-encoding
Caching Headers
Etag
W/"page_cache:95087952193:IndexController:f8f29a7bb2e62b596194ece66683f11e"
etag: W/"page_cache:95087952193:IndexController:f8f29a7bb2e62b596194ece66683f11e"
Content Headers
Content-Language
en-AU
Content-Type
text/html; charset=utf-8
content-language: en-AU content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Alt-Svc
h3=":443"; ma=86400
Date
Tue, 07 Apr 2026 20:13:03 GMT
Link
Other
rel=preconnect
rel=preconnect
crossorigin
URL
//surfstitch.com/cdn/shop/t/7/assets/overflow-list.css?v=168694168152117541881761021256
as=style
rel=preload
URL
//surfstitch.com/cdn/shop/t/7/assets/base.css?v=174264308516536407651770968511
as=style
rel=preload
Nel
Report-To Group
cf-nel
max-age: 1w
success: 1.0%
Report-To
Other
Server-Timing
processing;dur=34, db;dur=9, asn;desc="396356", edge;desc="IAD", country;desc="US", theme;desc="181466562881", pageType;desc="index", servedBy;desc="vbd4", requestID;desc="20e5081b-b336-4f02-9766-469d1f6513d4-1775592783", _y;desc="f71020f6-ae3b-461b-b221-de8cd48f122b", _s;desc="5e304c2b-f3bd-4b45-82b1-1ef72546d344", _cmp;desc="3.AMPS_USVA_f_f_ulK5OUlbTh6EWm1cAqrdHQ", compressionLevel;desc="5", cfRequestDuration;dur=98.999977
X-Dc
gcp-us-east1,gcp-us-east1,gcp-us-east1
X-Download-Options
noopen
X-Permitted-Cross-Domain-Policies
none
X-Request-Id
20e5081b-b336-4f02-9766-469d1f6513d4-1775592783
alt-svc: h3=":443"; ma=86400
cf-cache-status: DYNAMIC
cf-ray: 9e8bb0d19c65c974-IAD
date: Tue, 07 Apr 2026 20:13:03 GMT
link: <https://cdn.shopify.com>; rel="preconnect", <https://cdn.shopify.com>; rel="preconnect"; crossorigin, <//surfstitch.com/cdn/shop/t/7/assets/overflow-list.css?v=168694168152117541881761021256>; as="style"; rel="preload", <//surfstitch.com/cdn/shop/t/7/assets/base.css?v=174264308516536407651770968511>; as="style"; rel="preload"
nel: {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
powered-by: Shopify
report-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=tE1EjhwG1QynD8tK82mab9W%2F5%2BbcU%2BLSd7%2B5lanBn9nT57O1O4XDXasJ5SOPOqu2ce6h9SLdOhozdHgwtE2jjNPDobL%2FJ0GyPEeK4FZpv9GGkijSERmA1Vvobnars%2BcB"}],"group":"cf-nel","max_age":604800}
server-timing: processing;dur=34, db;dur=9, asn;desc="396356", edge;desc="IAD", country;desc="US", theme;desc="181466562881", pageType;desc="index", servedBy;desc="vbd4", requestID;desc="20e5081b-b336-4f02-9766-469d1f6513d4-1775592783", _y;desc="f71020f6-ae3b-461b-b221-de8cd48f122b", _s;desc="5e304c2b-f3bd-4b45-82b1-1ef72546d344", _cmp;desc="3.AMPS_USVA_f_f_ulK5OUlbTh6EWm1cAqrdHQ", compressionLevel;desc="5", cfRequestDuration;dur=98.999977
shopify-complexity-score: 300
x-dc: gcp-us-east1,gcp-us-east1,gcp-us-east1
x-download-options: noopen
x-permitted-cross-domain-policies: none
x-request-id: 20e5081b-b336-4f02-9766-469d1f6513d4-1775592783
Recommendations
Enable compression (gzip/brotli) to improve performance
Add Cache-Control header to optimize caching