Open
Cached
·
just now
19
Headers
Detected Technologies from Headers
Adobe Fonts (Typekit)
Akamai
ASP.NET
AWS
Clickagy
Cloudflare CDN
Cloudflare CDNJS
Crazy Egg
Facebook
Google Analytics
Google DoubleClick
Google Fonts
Google Search
Google Static File Front End
Google Tag Manager
HubSpot
HubSpot Analytics
HubSpot Forms
IP-API
LinkedIn
Quora
The Trade Desk
Twitter
Vimeo
YouTube
ZoomInfo
Google Cloud
Microsoft Azure
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=2592000
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Good
no-referrer-when-downgrade
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Strengthen CSP by removing 'unsafe-eval'
- • Add X-Content-Type-Options: nosniff
- • Consider adding Permissions-Policy to control browser features
Performance Headers
Connection
close
Transfer-Encoding
chunked
Vary
Accept-Encoding
connection: close transfer-encoding: chunked vary: Accept-Encoding
Caching Headers
Age
16
Cache-Control
no-cache
age: 16 cache-control: no-cache
Content Headers
Content-Type
text/html; charset=utf-8
content-type: text/html; charset=utf-8
Server Headers
server: cloudflare x-powered-by: ASP.NET
CORS Headers
No CORS headers found
Cookies Headers
Other Headers
Date
Thu, 07 May 2026 01:22:07 GMT
Request-Context
appId=cid-v1:00ecd528-b20e-4dc0-b701-83392c46d372
Server-Timing
cfCacheStatus;desc="DYNAMIC", cfEdge;dur=10,cfOrigin;dur=139
cf-cache-status: DYNAMIC cf-ray: 9f7c6969ca579c82-IAD date: Thu, 07 May 2026 01:22:07 GMT request-context: appId=cid-v1:00ecd528-b20e-4dc0-b701-83392c46d372 server-timing: cfCacheStatus;desc="DYNAMIC", cfEdge;dur=10,cfOrigin;dur=139
Recommendations
Enable compression (gzip/brotli) to improve performance
Consider removing X-Powered-By header to hide server technology