CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
ℹ 🔵No Compression
The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address51.13.37.176 Server Softwarenginx/1.24.0 (Ubuntu) ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk). ℹ 🔵No CompressionThe server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
DNS Lookup
37.9 ms
TCP Connect
68.5 ms
TLS Handshake
33.9 ms
Time To First Byte (TTFB)
135.9 ms
Content Download
0 ms
Total Response Time
135.9 ms
DNS Lookup37.9 ms TCP Connect68.5 ms TLS Handshake33.9 ms Time To First Byte (TTFB)135.9 ms Content Download0 ms Total Response Time135.9 ms
Security
HTTPS
✔ Enabled
HSTS
✔ max-age=31536000
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
✔ nosniff
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✔ max-age=31536000 CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options✔ nosniff HTTP/2⚠ HTTP/1.1