HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address172.66.45.13 Server Softwarecloudflare CDNCloudflare Compressiongzip ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
31.7 ms
TCP Connect
38.2 ms
TLS Handshake
17.7 ms
Time To First Byte (TTFB)
127.5 ms
Content Download
1.4 ms
Total Response Time
128.9 ms
DNS Lookup31.7 ms TCP Connect38.2 ms TLS Handshake17.7 ms Time To First Byte (TTFB)127.5 ms Content Download1.4 ms Total Response Time128.9 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
✔ nosniff
Referrer Policy
strict-origin-when-cross-origin
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options✔ nosniff Referrer Policystrict-origin-when-cross-origin HTTP/2⚠ HTTP/1.1