Open
Cached
·
just now
19
Headers
Detected Technologies from Headers
PayPal
ASP.NET
Google Maps
Google Tag Manager
Bing
Google Hosted Libraries
Reddit
Capterra
OptinMonster
Google DoubleClick
Google Analytics
Firebase
Cloudflare CDN
Google Cloud Storage
Google Static File Front End
Calendly
Google API JS Client
RawGit
Twitter
Cloudflare Web Analytics
Hotjar
LinkedIn
Stripe
Google Search
BootstrapCDN
Yandex
Facebook
Crisp
Adobe Fonts (Typekit)
CookieYes
Cloudflare CDNJS
AWS
Visual Website Optimizer
Vimeo
Tawk.to
YouTube
Microsoft Clarity
jsDelivr
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
No-referrer-when-downgrade
Permissions-Policy
Present
microphone=(self)
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
Cache-Control
private,no-cache, no-store, must-revalidate
Pragma
no-cache
cache-control: private,no-cache, no-store, must-revalidate pragma: no-cache
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Fri, 03 Apr 2026 20:46:14 GMT
Server-Timing
cfCacheStatus;desc="DYNAMIC", cfEdge;dur=9,cfOrigin;dur=293
Via
1.1 google
cf-cache-status: DYNAMIC cf-ray: 9e6aebebac283567-IAD date: Fri, 03 Apr 2026 20:46:14 GMT server-timing: cfCacheStatus;desc="DYNAMIC", cfEdge;dur=9,cfOrigin;dur=293 via: 1.1 google
Recommendations
Enable compression (gzip/brotli) to improve performance