HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address35.71.176.236 Server Softwarenginx Compressiongzip ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
14 ms
TCP Connect
15.1 ms
TLS Handshake
376.8 ms
Time To First Byte (TTFB)
579.9 ms
Content Download
0.1 ms
Total Response Time
580 ms
DNS Lookup14 ms TCP Connect15.1 ms TLS Handshake376.8 ms Time To First Byte (TTFB)579.9 ms Content Download0.1 ms Total Response Time580 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
Referrer Policy
no-referrer
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured Referrer Policyno-referrer HTTP/2⚠ HTTP/1.1