CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address62.233.41.32 Server Softwarenginx Compressiongzip ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
2.5 ms
TCP Connect
28.6 ms
TLS Handshake
29 ms
Time To First Byte (TTFB)
89.7 ms
Content Download
0.4 ms
Total Response Time
90.1 ms
DNS Lookup2.5 ms TCP Connect28.6 ms TLS Handshake29 ms Time To First Byte (TTFB)89.7 ms Content Download0.4 ms Total Response Time90.1 ms
Security
HTTPS
✔ Enabled
HSTS
✔ max-age=31536000; includeSubDomains
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
✔ nosniff
Referrer Policy
strict-origin-when-cross-origin
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✔ max-age=31536000; includeSubDomains CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options✔ nosniff Referrer Policystrict-origin-when-cross-origin HTTP/2⚠ HTTP/1.1