25 Headers

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=31536000
Content-Security-Policy
Weak
upgrade-insecure-requests
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Consider adding Permissions-Policy to control browser features

Performance Headers

2 headers
Connection
Performance
close
Transfer-Encoding
Performance
chunked

Caching Headers

2 headers
Cache-Control
Caching
s-maxage=36000, max-age=5
Last-Modified
Caching
Sun, 21 Dec 2025 16:44:51 GMT

Content Headers

1 headers
Content-Type
Content
text/html; charset=UTF-8

Server Headers

1 headers
Server
Server
cloudflare

CORS Headers

0 headers
No CORS headers found

Cookies Headers

1 headers
Set-Cookie
Cookies
_cfuvid=jOAVnj8CcED4f_EQH.8uq3STi0rukXivftLLDyg0heU-1767355656350-0.0.1.1-604800000; path=/; domain=.www.breakoutlearning.com; HttpOnly; Secure; SameSite=None

Other Headers

15 headers
Alt-Svc
Other
h3=":443"; ma=86400
Cf-Ray
Other
9b7a23138edfc947-IAD
Date
Other
Fri, 02 Jan 2026 12:07:36 GMT
Edge-Cache-Tag
Other
CT-194812246272,P-39763539,W-156109084077,W-156109787546,CW-156108291950,CW-160526371238,CW-174751499415,CW-182387185074,CW-190263421979,CW-195137037334,E-156100992610,E-156107597170,E-156108291975,E-156108291991,E-156108291995,E-156109097117,E-156109097120,E-156109097122,E-156109160335,E-156109160337,E-157017923636,E-174751495431,E-174752536595,E-190086791044,E-190176079942,E-190176206107,E-190178192716,MENU-156109787546,MENU-190606740021,RA-156108291925,RA-190178237865,PGS-ALL,SW-3,GC-190181717605,GC-195145659151,GC-195858222453,TS-156108925044
Link
Other
<https://fonts.googleapis.com>; rel=preconnect,<https://fonts.gstatic.com>; rel=preconnect,<https://fonts.googleapis.com/css2?family=Poppins:ital,wght@0,100;0,200;0,300;0,400;0,500;0,600;0,700;0,800;0,900;1,100;1,200;1,300;1,400;1,500;1,600;1,700;1,800;1,900&display=swap>; rel=preload; as=style,<https://fonts.googleapis.com/css2?family=Nunito+Sans:ital,opsz,wght@0,6..12,200;0,6..12,300;0,6..12,400;0,6..12,500;0,6..12,600;0,6..12,700;1,6..12,200;1,6..12,300;1,6..12,400;1,6..12,500;1,6..12,600;1,6..12,700&display=swap>; rel=preload; as=style,<https://fonts.googleapis.com/css2?family=Atkinson+Hyperlegible+Next:ital,wght@0,100;0,200;0,300;0,400;0,500;0,600;0,700;0,800;0,900;1,100;1,200;1,300;1,400;1,500;1,600;1,700;1,800;1,900&display=swap>; rel=preload; as=style,<https://fonts.googleapis.com/css2?family=Playfair+Display:ital,wght@0,100;0,200;0,300;0,400;0,500;0,600;0,700;0,800;0,900;1,100;1,200;1,300;1,400;1,500;1,600;1,700;1,800;1,900&display=swap>; rel=preload; as=style
Nel
Other
{"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Report-To
Other
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=NhGKD5o5bY0ziYxNL4wTGuxm9lMIvwyQ01YfqI%2FCrJc%2FGEyM0QQg2N%2ByrQuLF05OIjF5ndgabsBo8K0gpa2zaLNliF44scFMEieBGz05FiwT5XKvOyjOX%2BiUiJ3b9z14AK57ltocJVEUDQ%3D%3D"}],"group":"cf-nel","max_age":604800}
X-Hs-Cache-Config
Other
BrowserCache-5s-EdgeCache-5s
X-Hs-Cache-Control
Other
s-maxage=36000, max-age=0
X-Hs-Cf-Cache-Status
Other
HIT
X-Hs-Cfworker-Meta
Other
{"contentType":"SITE_PAGE","resolver":"PreRenderedContentResolver"}
X-Hs-Content-Id
Other
194812246272
X-Hs-Hub-Id
Other
39763539
X-Hs-Portal-Id
Other
39763539
X-Hs-Prerendered
Other
Sun, 21 Dec 2025 16:44:51 GMT

Recommendations

Enable compression (gzip/brotli) to improve performance