Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 2.16.165.117 |
| Server Software | Apache |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 2.16.165.117
Server Software Apache
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Performance
| DNS Lookup | 6.5 ms |
| TCP Connect | 7.8 ms |
| TLS Handshake | 6.4 ms |
| Time To First Byte (TTFB) | 57 ms |
| Content Download | 0.1 ms |
| Total Response Time | 57 ms |
DNS Lookup 6.5 ms
TCP Connect 7.8 ms
TLS Handshake 6.4 ms
Time To First Byte (TTFB) 57 ms
Content Download 0.1 ms
Total Response Time 57 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ✔ nosniff |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ✔ nosniff
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
Technology Apache
HTTP Headers
| Server
| Apache |
| Access-control-allow-headers
| X-Requested-With, Content-Type, Authorization, Origin, Accept, Accept-Encoding |
| Access-control-allow-methods
| POST, GET, OPTIONS, DELETE, PUT |
| Access-control-allow-credentials
| true |
| Access-control-expose-headers
| Location |
| Access-control-max-age
| 86400 |
| P3p
| policyref="/w3c/p3p.xml" CP="IDC DSP COR CURa ADMa OUR IND PHY ONL COM STA" |
| Content-encoding
| gzip |
| X-host
| blm-web-170 |
| X-content-type-options
| nosniff |
| Content-length
| 86 |
| Content-type
| application/json; charset=utf-8 |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| Date
| Thu, 20 Aug 2026 10:21:25 GMT |
| Vary
| Accept-Encoding |
| Set-cookie
| bm_sz=CA8707B4F9A83816277CF7C80A9243DE~YAAQRwsQAm6b1h2gAQAAw5uwHgAwQJGT5CXpNn7nlB1NGG10S+ylEAkFEnaIG5el+1byZWGWuiiLBvFwSax1QZtLzkBy1jVQDQC4eBkavwhkl4W48UhNpfunbmTUjext/tpJxvVzbEMKRKlaIArdJeNAmDRbV5PoKYW+QYIhshG5UjKQhw3KXx6ort2Bv4cOkHJ2q9PqYMcMUCctPPnVWzVp0JElck7jRYxElT/xsp3rMolYMLnsxwwrUf/Ac5Z3JP7vOmvqCrjm+vUl6xwEMgR+liV7gNw+msUzH+HB0qBSityCyVtaddSRl/s7Oe08X8mQ206Yt8zkU5T0TKhr2V22LDJq/4w3JyXm/Zn+MGvkz1SSUFQh7o4+AiF4AW7sQ/nSQlX70xcYYa0=~3160370~4408900; Domain=.deezer.com; Path=/; Expires=Thu, 20 Aug 2026 14:21:25 GMT; Max-Age=14400 |
| X-org
| FR |
Server Apache
Access-control-allow-headers X-Requested-With, Content-Type, Authorization, Origin, Accept, Accept-Encoding
Access-control-allow-methods POST, GET, OPTIONS, DELETE, PUT
Access-control-allow-credentials true
Access-control-expose-headers Location
Access-control-max-age 86400
P3p policyref="/w3c/p3p.xml" CP="IDC DSP COR CURa ADMa OUR IND PHY ONL COM STA"
Content-encoding gzip
X-host blm-web-170
X-content-type-options nosniff
Content-length 86
Content-type application/json; charset=utf-8
Strict-transport-security max-age=31536000; includeSubDomains
Date Thu, 20 Aug 2026 10:21:25 GMT
Vary Accept-Encoding
Set-cookie bm_sz=CA8707B4F9A83816277CF7C80A9243DE~YAAQRwsQAm6b1h2gAQAAw5uwHgAwQJGT5CXpNn7nlB1NGG10S+ylEAkFEnaIG5el+1byZWGWuiiLBvFwSax1QZtLzkBy1jVQDQC4eBkavwhkl4W48UhNpfunbmTUjext/tpJxvVzbEMKRKlaIArdJeNAmDRbV5PoKYW+QYIhshG5UjKQhw3KXx6ort2Bv4cOkHJ2q9PqYMcMUCctPPnVWzVp0JElck7jRYxElT/xsp3rMolYMLnsxwwrUf/Ac5Z3JP7vOmvqCrjm+vUl6xwEMgR+liV7gNw+msUzH+HB0qBSityCyVtaddSRl/s7Oe08X8mQ206Yt8zkU5T0TKhr2V22LDJq/4w3JyXm/Zn+MGvkz1SSUFQh7o4+AiF4AW7sQ/nSQlX70xcYYa0=~3160370~4408900; Domain=.deezer.com; Path=/; Expires=Thu, 20 Aug 2026 14:21:25 GMT; Max-Age=14400
X-org FR