CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address49.12.83.19 Server Softwarenginx Compressiongzip ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
1 ms
TCP Connect
14.4 ms
TLS Handshake
18.6 ms
Time To First Byte (TTFB)
55.8 ms
Content Download
0 ms
Total Response Time
55.8 ms
DNS Lookup1 ms TCP Connect14.4 ms TLS Handshake18.6 ms Time To First Byte (TTFB)55.8 ms Content Download0 ms Total Response Time55.8 ms
Security
HTTPS
✔ Enabled
HSTS
✔ max-age=15768000; includeSubDomains
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✔ max-age=15768000; includeSubDomains CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured HTTP/2⚠ HTTP/1.1
SEO Quick Check
Title
Strucom FZ-LLC
Robots Meta
noindex, nofollow
TitleStrucom FZ-LLC Robots Metanoindex, nofollow
Detected Technologies
Technology
Nginx
TechnologyNginx
HTTP Headers
Server
nginx
Date
Tue, 25 Aug 2026 01:49:44 GMT
Content-Type
text/html
Content-Length
259
Connection
keep-alive
Last-Modified
Fri, 05 May 2023 13:38:09 GMT
ETag
"19a-5faf2664e7240-gzip"
Accept-Ranges
bytes
Vary
Accept-Encoding
Content-Encoding
gzip
Strict-Transport-Security
max-age=15768000; includeSubDomains
X-Powered-By
PleskLin
Access-Control-Allow-Origin
*
Access-Control-Allow-Methods
GET, POST, OPTIONS
Access-Control-Allow-Headers
Content-Type
Meta Tags
Robots
noindex, nofollow
Servernginx DateTue, 25 Aug 2026 01:49:44 GMT Content-Typetext/html Content-Length259 Connectionkeep-alive Last-ModifiedFri, 05 May 2023 13:38:09 GMT ETag"19a-5faf2664e7240-gzip" Accept-Rangesbytes VaryAccept-Encoding Content-Encodinggzip Strict-Transport-Securitymax-age=15768000; includeSubDomains X-Powered-ByPleskLin Access-Control-Allow-Origin* Access-Control-Allow-MethodsGET, POST, OPTIONS Access-Control-Allow-HeadersContent-Type