HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address34.49.24.229 Server Softwareopenresty/1.27.1.2 CDNFastly Compressiongzip ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
101.2 ms
TCP Connect
103.1 ms
TLS Handshake
109.2 ms
Time To First Byte (TTFB)
399.3 ms
Content Download
14.8 ms
Total Response Time
414.1 ms
DNS Lookup101.2 ms TCP Connect103.1 ms TLS Handshake109.2 ms Time To First Byte (TTFB)399.3 ms Content Download14.8 ms Total Response Time414.1 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured HTTP/2⚠ HTTP/1.1