Open
Cached
·
just now
13
Headers
Detected Technologies from Headers
Adobe Target
Akamai
Active incidents
AppDynamics
Amazon S3
Brightcove
Facebook
Google Analytics
Google API JS Client
Google DoubleClick
Google Fonts
Google Maps
Google Search
Google Static File Front End
Google Tag Manager
Optimizely
Qualtrics
Tealium
Twitter
Yahoo
YouTube
Google Cloud
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=16070400; includeSubDomains
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close, Transfer-Encoding
Transfer-Encoding
chunked
connection: close, Transfer-Encoding transfer-encoding: chunked
Caching Headers
Cache-Control
max-age=60
Last-Modified
Wed, 07 Oct 2026 20:40:40 GMT
cache-control: max-age=60 last-modified: Wed, 07 Oct 2026 20:40:40 GMT
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
Server Headers
No server headers found
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Thu, 08 Oct 2026 08:57:28 GMT
S
prod-eu-sy-aempub
date: Thu, 08 Oct 2026 08:57:28 GMT s: prod-eu-sy-aempub
Recommendations
Enable compression (gzip/brotli) to improve performance