Open
Cached
·
just now
28
Headers
Detected Technologies from Headers
Greenhouse
Google AdSense
Google Tag Manager
Crowdin
G2
Google Sign-In
Google reCAPTCHA
RevenueHero
HubSpot Forms
Google DoubleClick
Google Analytics
Microsoft Advertising
6sense
New Relic
Cloudflare CDN
Google Static File Front End
Next.js
Twitter
Bizzabo
Cloudflare Web Analytics
Hotjar
LinkedIn
ZoomInfo
Cloudflare Turnstile
HubSpot Analytics
unpkg
Google Search
Facebook
Crisp
Storyblok
TikTok
jQuery
PostHog
HubSpot
HubSpot Live Chat
jsDelivr
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding, Origin, X-WWW-AB-Test-Flags, Cookie
connection: close transfer-encoding: chunked vary: RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding, Origin, X-WWW-AB-Test-Flags, Cookie
Caching Headers
Age
491742
Cache-Control
public, s-maxage=2592000, max-age=300
age: 491742 cache-control: public, s-maxage=2592000, max-age=300
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
Server Headers
server: cloudflare x-powered-by: Next.js
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Wed, 06 May 2026 03:27:40 GMT
Ratelimit-Limit
10000
Ratelimit-Remaining
9999
Ratelimit-Reset
1
Server-Timing
cfCacheStatus;desc="HIT", cfEdge;dur=9,cfOrigin;dur=0,cfWorker;dur=70
Via
1.1 google
X-Ab-Test-Compliance-Required
true
X-Ab-Test-Flags-Fetched-Time
57.00
X-Ab-Test-Sticky-Flags
www-home-page-signup-button-test
X-As-Path
/
X-Dns-Prefetch-Control
on
X-Middleware-Rewrite
/static/
X-Www-Ab-Test-Flags
{"flags":{"www-ab-test":false,"www-contact-sales-form-optimization":false,"www-high-intention-popup-v3":"test","www-home-redesign-2601":false,"www-new-tracking-product-demo-page":"test","www-pricing-annual-default-hidden-1usd":"test","www-pricing-redesign":"test","www-restore-shopify-button":false,"www-shopify-pricing":false,"www-high-intention-popup-v2":"test","www-home-page-signup-button-test":"control","www-home-redesign-2601-v2":"test","www-tracking-home-hero-cta":"control"},"processedBy":"cloudflare-worker"}
cf-cache-status: HIT
cf-ray: 9f74e3f769adc5e9-IAD
date: Wed, 06 May 2026 03:27:40 GMT
ratelimit-limit: 10000
ratelimit-remaining: 9999
ratelimit-reset: 1
server-timing: cfCacheStatus;desc="HIT", cfEdge;dur=9,cfOrigin;dur=0,cfWorker;dur=70
via: 1.1 google
x-ab-test-compliance-required: true
x-ab-test-flags-fetched-time: 57.00
x-ab-test-sticky-flags: www-home-page-signup-button-test
x-as-path: /
x-dns-prefetch-control: on
x-middleware-rewrite: /static/
x-nextjs-cache: HIT
x-www-ab-test-flags: {"flags":{"www-ab-test":false,"www-contact-sales-form-optimization":false,"www-high-intention-popup-v3":"test","www-home-redesign-2601":false,"www-new-tracking-product-demo-page":"test","www-pricing-annual-default-hidden-1usd":"test","www-pricing-redesign":"test","www-restore-shopify-button":false,"www-shopify-pricing":false,"www-high-intention-popup-v2":"test","www-home-page-signup-button-test":"control","www-home-redesign-2601-v2":"test","www-tracking-home-hero-cta":"control"},"processedBy":"cloudflare-worker"}
Recommendations
Enable compression (gzip/brotli) to improve performance
Consider removing X-Powered-By header to hide server technology