SSL Verification Bypassed
The server's SSL certificate could not be verified. The analysis was completed using insecure mode. Data may be less reliable.
Reason:
Unknown Certificate Authority - the server's certificate is not trusted
Open
Cached
·
just now
21
Headers
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Present
same-origin
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Significantly strengthen CSP directives
- • Consider adding Permissions-Policy to control browser features
Performance Headers
1 headers
Vary
Performance
accept-encoding
Caching Headers
3 headers
Age
Caching
17739
Cache-Control
Caching
max-age=60
Last-Modified
Caching
Thu, 15 Jan 2026 05:25:54 GMT
Content Headers
1 headers
Content-Type
Content
text/html
Server Headers
1 headers
Server
Server
cloudflare
CORS Headers
0 headers
No CORS headers found
Cookies Headers
0 headers
No cookies headers found
Other Headers
9 headers
Alt-Svc
Other
h3=":443"; ma=86400
Cf-Cache-Status
Other
HIT
Cf-Ray
Other
9be4a6c678b6e5ba-IAD
Date
Other
Thu, 15 Jan 2026 10:22:21 GMT
Surrogate-Control
Other
max-age=432000
Surrogate-Key
Other
optionalpha.com 5fba23ebc651c6d16f446fc4 pageId:6139d205b9efb03ed589b6eb 62e2ac1375b5215265cea95c 6139d205b9efb0807189b643 6139d205b9efb002df89b603
X-Api
Other
0
X-Cluster-Name
Other
us-east-1-prod-hosting-red
X-Lambda-Id
Other
76433129-20ca-4da5-8c86-cd72069cb3d0
Recommendations
Enable compression (gzip/brotli) to improve performance