Open
Cached
·
just now
25
Headers
Detected Technologies from Headers
PayPal
Auth0
Chameleon
Google Tag Manager
Fullstory
WordPress
Liveblocks
HubSpot Forms
Cookiebot
HubSpot Feedback & Surveys
Google DoubleClick
Google Analytics
ClearBit
Dropbox
Mixpanel
Segment
Cloudflare CDN
Datadog
Google Cloud Storage
Google Static File Front End
Google Fonts
Wistia
Svix
Transcend
Active incidents
Loom
LinkedIn
Stripe
HubSpot Analytics
Google Search
Ketch
Facebook
OneTrust
Adobe Fonts (Typekit)
Split.io
Active incidents
Vimeo
TrustArc
Statsig
HubSpot
Intercom
YouTube
HubSpot Live Chat
Sentry
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
no-referrer,strict-origin-when-cross-origin
Permissions-Policy
Present
camera=(), microphone=(), geolocation=(); +13 more
Recommendations
- • Strengthen CSP by removing 'unsafe-eval'
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
Age
105
Cache-Control
private, no-cache, no-store, max-age=0, must-revalidate
age: 105 cache-control: private, no-cache, no-store, max-age=0, must-revalidate
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Tue, 05 May 2026 16:19:02 GMT
Document-Policy
js-profiling
Origin-Agent-Cluster
?1
Via
1.1 google
X-Dns-Prefetch-Control
off
X-Download-Options
noopen
X-Permitted-Cross-Domain-Policies
none
cf-cache-status: MISS cf-ray: 9f711084fdf02078-IAD date: Tue, 05 May 2026 16:19:02 GMT document-policy: js-profiling origin-agent-cluster: ?1 via: 1.1 google x-dns-prefetch-control: off x-download-options: noopen x-permitted-cross-domain-policies: none
Recommendations
Enable compression (gzip/brotli) to improve performance