Open
Cached
·
just now
28
Headers
Detected Technologies from Headers
AWS CloudFront
Microsoft 365
Pingdom
Zscaler
Google Tag Manager
UserWay
WP Engine
Brightcove
Tailwind CSS
Bing
Google reCAPTCHA
SalesLoft
Google Translate
Reddit
Statuspage
HubSpot Forms
Active incidents
JotForm
Google DoubleClick
Google Analytics
Microsoft Advertising
ON24
Cloudflare CDN
Google Static File Front End
Google API JS Client
Wistia
Twitter
Qualtrics
LinkedIn
HubSpot CMS
Active incidents
HubSpot Analytics
Active incidents
Drift
unpkg
Google Search
Cloudflare
Active incidents
Adobe Marketo
Demandbase
Facebook
Amazon S3
Impartner
Mouseflow
StackAdapt
OneTrust
GitHub
Active incidents
Salesforce Sites
Moz
Cloudflare CDNJS
AWS
Intentsify
Visual Website Optimizer
Akamai
Active incidents
Smartling
HubSpot
Active incidents
YouTube
Microsoft Clarity
HubSpot Live Chat
Active incidents
jsDelivr
Google Cloud
Google Cloud Storage
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=31536000
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Present
camera=(), microphone=()
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding, Accept-Encoding, Accept-Encoding, Accept-Encoding,Cookie
connection: close transfer-encoding: chunked vary: Accept-Encoding, Accept-Encoding, Accept-Encoding, Accept-Encoding,Cookie
Caching Headers
Cache-Control
max-age=600, must-revalidate
Expires
Thu, 19 Nov 1981 08:52:00 GMT
Last-Modified
Sun, 22 Mar 2026 14:56:01 GMT
Pragma
no-cache
cache-control: max-age=600, must-revalidate expires: Thu, 19 Nov 1981 08:52:00 GMT last-modified: Sun, 22 Mar 2026 14:56:01 GMT pragma: no-cache
Content Headers
Content-Type
text/html; charset=UTF-8
content-type: text/html; charset=UTF-8
Server Headers
server: cloudflare x-powered-by: WP Engine
CORS Headers
Access-Control-Allow-Credentials
true
Access-Control-Allow-Origin
*
access-control-allow-credentials: true access-control-allow-origin: *
Cookies Headers
Other Headers
Alt-Svc
h3=":443"; ma=86400
Date
Thu, 30 Apr 2026 01:37:03 GMT
Feature-Policy
camera=(), microphone=()
X-Cache
HIT: 211
X-Cache-Group
normal
X-Cacheable
SHORT
X-Ua-Compatible
IE=edge
alt-svc: h3=":443"; ma=86400 cf-cache-status: DYNAMIC cf-ray: 9f42d1aec93f1f6d-IAD date: Thu, 30 Apr 2026 01:37:03 GMT feature-policy: camera=(), microphone=() link: <https://www.bentley.com/>; rel=shortlink x-cache: HIT: 211 x-cache-group: normal x-cacheable: SHORT x-ua-compatible: IE=edge
Recommendations
Enable compression (gzip/brotli) to improve performance
Consider removing X-Powered-By header to hide server technology