Open
Cached
·
just now
19
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=63072000
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
3 headers
Connection
Performance
close
Transfer-Encoding
Performance
chunked
Vary
Performance
accept-encoding
Caching Headers
2 headers
Age
Caching
0
Cache-Control
Caching
public, max-age=86400, must-revalidate
Content Headers
1 headers
Content-Type
Content
text/html
Server Headers
1 headers
Server
Server
cloudflare
CORS Headers
0 headers
No CORS headers found
Cookies Headers
0 headers
No cookies headers found
Other Headers
11 headers
Alt-Svc
Other
h3=":443"; ma=86400
Cf-Cache-Status
Other
REVALIDATED
Cf-Ray
Other
9bc7bc170aa20736-IAD
Date
Other
Sun, 11 Jan 2026 22:08:47 GMT
Link
Other
<./_app/immutable/assets/0.CDuBx6dU.css>; rel="preload";as="style"; nopush, <./_app/immutable/assets/4.DmmL-dQR.css>; rel="preload";as="style"; nopush, <./_app/immutable/entry/start.BsBTWnzO.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/entry.CZl9JDma.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/runtime.D18KWRzx.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index.9qAj5uyw.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/control.CYgJF_JY.js>; rel="modulepreload"; nopush, <./_app/immutable/entry/app.C0qDCtza.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/preload-helper.C1FmrZbK.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/render.CPuIqAtA.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/svelte-head.yDwyfOOh.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/template.Da8VfQKQ.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/disclose-version.Bg9kRutz.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/if.CyybJA_L.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/proxy.BQOVqBrR.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/props.B6kfIa-Q.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index-client.BUL7iuhz.js>; rel="modulepreload"; nopush, <./_app/immutable/nodes/0.DqYFW1CY.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/slot.C8fVS-ky.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/lifecycle.BF3XpTMb.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/store.YTQEJGio.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/firebaseInitialize.CCpOCxIT.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index-e3d5d3f4.DqzO82BZ.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/stores.DjOfkogd.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index.BsBGA0Ui.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/each.CQYVeCZF.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/attributes.YuIhAq4M.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/class.BV4YHkC-.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index.CrmY2uKh.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/stores.CdD6uwz8.js>; rel="modulepreload"; nopush, <./_app/immutable/nodes/4.CqL6ar7L.js>; rel="modulepreload"; nopush, <./_app/immutable/chunks/index.DMTX4lsZ.js>; rel="modulepreload"; nopush
Nel
Other
{"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To
Other
{"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=o%2BgeGiUSW3zwur1%2B0Y4D9uNchfhXh9P7E1qtyupjBHlIFIpkceG6sdTwmwomkWMkIzsSQ%2BTysEm9ROWDjOYj9qa9C1mW%2FXuI44On"}]}
Server-Timing
Other
cfEdge;dur=12,cfOrigin;dur=265
X-Sveltekit-Page
Other
true
X-Vercel-Cache
Other
MISS
X-Vercel-Id
Other
iad1::iad1::fgqjq-1767232315844-47ff91350625
Recommendations
Enable compression (gzip/brotli) to improve performance