Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 34.160.49.102 |
| Server Software | Microsoft-IIS/10.0 |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 34.160.49.102
Server Software Microsoft-IIS/10.0
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://brothers.tw:443 | 302 | HTTP/2 302 |
| 2 | https://brothers.tw/POR0101_ | 200 | HTTP/2 200 |
#1 URL https://brothers.tw:443
HTTP Status Code 302
Status HTTP/2 302
#2 URL https://brothers.tw/POR0101_
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 4.1 ms |
| TCP Connect | 5.7 ms |
| TLS Handshake | 11 ms |
| Time To First Byte (TTFB) | 369.4 ms |
| Content Download | 0.4 ms |
| Total Response Time | 369.9 ms |
DNS Lookup 4.1 ms
TCP Connect 5.7 ms
TLS Handshake 11 ms
Time To First Byte (TTFB) 369.4 ms
Content Download 0.4 ms
Total Response Time 369.9 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains; preload |
| CSP | ✔ Configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| Permissions Policy | ✔ Configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains; preload
CSP ✔ Configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
Permissions Policy ✔ Configured
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title 中信兄弟官方網站
Detected Technologies
| Technology | jQuery Google Analytics |
Technology jQuery Google Analytics
HTTP Headers
| Cache-control
| no-cache, no-store |
| Pragma
| no-cache |
| Content-type
| text/html; charset=utf-8 |
| Server
| Microsoft-IIS/10.0 |
| X-frame-options
| SAMEORIGIN |
| X-content-type-options
| nosniff |
| X-xss-protection
| 1;mode=block |
| Strict-transport-security
| max-age=31536000; includeSubDomains; preload |
| Referrer-policy
| strict-origin-when-cross-origin |
| Content-security-policy
| block-all-mixed-content; frame-ancestors 'self';object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.utiki.com.tw code.jquery.com blob: data: https:;style-src 'self' 'unsafe-inline' *.utiki.com.tw code.jquery.com fonts.googleapis.com fonts.gstatic.com https:; font-src 'self' fonts.googleapis.com fonts.gstatic.com data: https:; default-src * data: 'unsafe-inline' 'unsafe-hashes' 'unsafe-eval';form-action 'self' https:;access-control-allow-origin: 'self'; |
| Permissions-policy
| accelerometer=() |
| Set-cookie
| .AspNetCore.Antiforgery.NKMnGoKuesE=CfDJ8KG_X3xEV6JHuOQKNmp2jtSfafarh7pkEjfWbx68647ZQI-tchsapHwK6jrca5RK2W28wx0TTs_cSvl68ZhNhWXR55ZLJL4Vbbd-PfJRMFlKA9eluGOiHeeHSdy4RzSXjQ7KOTyzP2Hp6bBCJ9ZaBzg; path=/; secure; samesite=strict; httponly |
| X-powered-by
| ASP.NET |
| Date
| Thu, 20 Aug 2026 09:59:02 GMT |
| Via
| 1.1 google |
| Alt-svc
| h3=":443"; ma=2592000 |
Meta Tags
| Viewport | width=device-width, initial-scale=1 |
| X-UA-Compatible | IE=edge |
Cache-control no-cache, no-store
Pragma no-cache
Content-type text/html; charset=utf-8
Server Microsoft-IIS/10.0
X-frame-options SAMEORIGIN
X-content-type-options nosniff
X-xss-protection 1;mode=block
Strict-transport-security max-age=31536000; includeSubDomains; preload
Referrer-policy strict-origin-when-cross-origin
Content-security-policy block-all-mixed-content; frame-ancestors 'self';object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.utiki.com.tw code.jquery.com blob: data: https:;style-src 'self' 'unsafe-inline' *.utiki.com.tw code.jquery.com fonts.googleapis.com fonts.gstatic.com https:; font-src 'self' fonts.googleapis.com fonts.gstatic.com data: https:; default-src * data: 'unsafe-inline' 'unsafe-hashes' 'unsafe-eval';form-action 'self' https:;access-control-allow-origin: 'self';
Permissions-policy accelerometer=()
Set-cookie .AspNetCore.Antiforgery.NKMnGoKuesE=CfDJ8KG_X3xEV6JHuOQKNmp2jtSfafarh7pkEjfWbx68647ZQI-tchsapHwK6jrca5RK2W28wx0TTs_cSvl68ZhNhWXR55ZLJL4Vbbd-PfJRMFlKA9eluGOiHeeHSdy4RzSXjQ7KOTyzP2Hp6bBCJ9ZaBzg; path=/; secure; samesite=strict; httponly
X-powered-by ASP.NET
Date Thu, 20 Aug 2026 09:59:02 GMT
Via 1.1 google
Alt-svc h3=":443"; ma=2592000