Open
Cached
·
just now
20
Headers
Detected Technologies from Headers
Amazon Advertising
AWS
AWS CloudFront
Microsoft Advertising
Criteo
Datadog
DoubleVerify
Facebook
Google AdSense
Google Analytics
Google DoubleClick
Google Fonts
Google Maps
Google Search
Google Sign-In
Google Tag Manager
hCaptcha
Hotjar
LaunchDarkly
Liveramp
Microsoft Clarity
OneTrust
OpenX
Pinterest
Samplicio
Stripe
The Trade Desk
Typeform
Zendesk
Google Cloud Storage
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Content-Security-Policy header to prevent XSS attacks
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Vary
Accept-Encoding
connection: close vary: Accept-Encoding
Caching Headers
Cache-Control
private, no-cache, no-store, max-age=0, must-revalidate
Etag
"cel5texc467c4"
cache-control: private, no-cache, no-store, max-age=0, must-revalidate etag: "cel5texc467c4"
Content Headers
Content-Length
9508
Content-Type
text/html; charset=utf-8
content-length: 9508 content-type: text/html; charset=utf-8
Server Headers
No server headers found
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Alt-Svc
h3=":443"; ma=86400
Date
Wed, 29 Apr 2026 06:11:16 GMT
X-Dns-Prefetch-Control
on
alt-svc: h3=":443"; ma=86400 date: Wed, 29 Apr 2026 06:11:16 GMT via: 1.1 4e21e4c06939b7370c55385064486ed4.cloudfront.net (CloudFront) x-amz-cf-id: gmSKG928XUTyfzjzFUCLumbEz_KJ4bLbtGUluxTWMFAi4Rr6klf6Zg== x-amz-cf-pop: IAD61-P13 x-cache: Miss from cloudfront x-dns-prefetch-control: on
Recommendations
Enable compression (gzip/brotli) to improve performance