HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address198.2.231.3 Server Softwarenginx/1.29.4 Compressiongzip ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
~5 ms
TCP Connect
141.1 ms
TLS Handshake
285.5 ms
Time To First Byte (TTFB)
570.2 ms
Content Download
0 ms
Total Response Time
570.2 ms
DNS Lookup~5 ms TCP Connect141.1 ms TLS Handshake285.5 ms Time To First Byte (TTFB)570.2 ms Content Download0 ms Total Response Time570.2 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
Referrer Policy
unsafe-url
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured Referrer Policyunsafe-url HTTP/2⚠ HTTP/1.1