Cached · just now
15 Headers

Detected Technologies from Headers

HTTP Security Headers

Status
Strict-Transport-Security
Present
max-age=300
Content-Security-Policy
Weak
frame-ancestors Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Increase HSTS max-age to at least 1 year and add includeSubDomains
  • Significantly strengthen CSP directives
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

Performance Headers

Accept-Ranges
Performance
bytes
Connection
Performance
close
Vary
Performance
Accept, Accept-Encoding

Caching Headers

Age
Caching
90510

Content Headers

Content-Length
Content
451136
Content-Type
Content
text/html

Server Headers

No server headers found

CORS Headers

No CORS headers found

Cookies Headers

No cookies headers found

Other Headers

Date
Other
Thu, 25 Jun 2026 13:37:27 GMT
Datocms-Cache-Tags
Other
$o )>l "s3ze_ "l-hv6 ##<-k~ #cy5!y #cy5!< "{[.'3 "{[.@p )._6s9i ).q|tt; ).h9#yk ).g'=4x )._6szd (plc?!1 (pn*};- (png_e3 (ppby7c navbar favicon
Via
Other
1.1 varnish, 1.1 varnish
X-Cache
Other
HIT, HIT
X-Cache-Hits
Other
20, 0
X-Served-By
Other
cache-dub4394-DUB, cache-iad-kcgs7200170-IAD
X-Timer
Other
S1782394648.880570,VS0,VE1

Recommendations

Enable compression (gzip/brotli) to improve performance

Add Cache-Control header to optimize caching