Open
Cached
·
just now
22
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Significantly strengthen CSP directives
- • Consider adding Permissions-Policy to control browser features
Performance Headers
3 headers
Connection
Performance
keep-alive
Transfer-Encoding
Performance
chunked
Vary
Performance
Cookie,Accept-Encoding
Caching Headers
4 headers
Cache-Control
Caching
public, max-age=900
Etag
Caching
"1762579766-0"
Expires
Caching
Sun, 19 Nov 1978 05:00:00 GMT
Last-Modified
Caching
Sat, 08 Nov 2025 05:29:26 GMT
Content Headers
1 headers
Content-Type
Content
text/html; charset=UTF-8
Server Headers
1 headers
Server
Server
Apache
CORS Headers
0 headers
No CORS headers found
Cookies Headers
1 headers
Set-Cookie
Cookies
AWSALBCORS=H0K3BDl9Je1rahB5YGasWAE+BquW8PUgkhZlrz8QC/soRX9SdB0i8UePyJBhwCcrpdBPziNkFZh8K1su0RrYv0ryKRtBacOu2T3JRZnXHlcJrl/lJwY52m62huQh; Expires=Sat, 15 Nov 2025 05:30:53 GMT; Path=/; SameSite=None
Other Headers
6 headers
Date
Other
Sat, 08 Nov 2025 05:30:53 GMT
Via
Other
1.1 a71dc86d67780d7478c72e1b147b8a32.cloudfront.net (CloudFront)
X-Amz-Cf-Id
Other
JEcP83Rh02SJRvKm1lEKp-10pf_8zi1Uuh3LqJ2PHFxFm1wZaJ0n6w==
X-Amz-Cf-Pop
Other
IAD61-P10
X-Cache
Other
Miss from cloudfront
X-Drupal-Cache
Other
HIT
Recommendations
Enable compression (gzip/brotli) to improve performance
Analysis completed in 384ms