Open
Cached
·
just now
21
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Excellent
max-age=31536000; includeSubDomains; preload
Content-Security-Policy
Basic
default-src; script-src; style-src; +5 more
default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data: https://gravatar.com https://www.gravatar.com; frame-src 'self' https://play.libsyn.com; base-uri 'none'; form-action 'self' https://duckduckgo.com; frame-ancestors 'none';
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Good
strict-origin-when-cross-origin
Permissions-Policy
Present
accelerometer=(), ambient-light-sensor=(), battery=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), geolocation=(), gyroscope=(), keyboard-map=(), magnetometer=(), microphone=(), midi=(), navigation-override=(), payment=(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb=(), xr-spatial-tracking=()
Recommendations
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
Performance Headers
2 headers
Connection
Performance
keep-alive
Vary
Performance
accept-encoding
Caching Headers
2 headers
Cache-Control
Caching
public, max-age=0, must-revalidate
Etag
Caching
"13b9c5d460ce8785c321e55ae93f7f80"
Content Headers
2 headers
Content-Length
Content
105338
Content-Type
Content
text/html; charset=utf-8
Server Headers
1 headers
Server
Server
cloudflare
CORS Headers
1 headers
Access-Control-Allow-Origin
Cors
*
Cookies Headers
1 headers
Set-Cookie
Cookies
campaign=homepage%3A1763464556%3A3; SameSite=Lax; Secure; Path=/; Domain=fastmail.com; Max-Age=31536000
Other Headers
6 headers
Accept-Ch
Other
Sec-CH-UA-Arch, Sec-CH-UA-Bitness
Alt-Svc
Other
h3=":443"; ma=86400
Cf-Ray
Other
9a070d851cf2e5b8-IAD
Date
Other
Tue, 18 Nov 2025 11:15:56 GMT
Nel
Other
{"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Report-To
Other
{"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=iCwCy0PtVN%2FADtg%2ByrGGBS577fvoW%2BbZ6aqktc9sn2wU7LbBmuswUHleApjMQvkt71LVYE3YCHTJszlmjArxW1aQS1dv9Gg3bzdzax%2BZAVY%3D"}]}
Recommendations
Enable compression (gzip/brotli) to improve performance
Analysis completed in 53ms