Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 54.235.96.128 |
| Server Software | nginx/1.24.0 (Ubuntu) |
| Compression | gzip |
|
ℹ 🔵 Missing HSTS | HTTP Strict Transport Security is not configured. Recommended for HTTPS sites. |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 54.235.96.128
Server Software nginx/1.24.0 (Ubuntu)
Compression gzip
ℹ 🔵 Missing HSTS HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://heroism.com:443 | 302 | HTTP/2 302 |
| 2 | http://www.heroism.com/ | 200 | HTTP/1.1 200 OK |
#1 URL https://heroism.com:443
HTTP Status Code 302
Status HTTP/2 302
#2 URL http://www.heroism.com/
HTTP Status Code 200
Status HTTP/1.1 200 OK
Performance
| DNS Lookup | 160 ms |
| TCP Connect | 242.5 ms |
| TLS Handshake | ~80 ms |
| Time To First Byte (TTFB) | 352.4 ms |
| Content Download | 0.1 ms |
| Total Response Time | 352.5 ms |
DNS Lookup 160 ms
TCP Connect 242.5 ms
TLS Handshake ~80 ms
Time To First Byte (TTFB) 352.4 ms
Content Download 0.1 ms
Total Response Time 352.5 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✘ Not configured |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✘ Not configured
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title heroism.com
Detected Technologies
| Technology | Google Analytics Google Tag Manager Nginx |
Technology Google Analytics Google Tag Manager Nginx
HTTP Headers
| Cache-Control
| max-age=0, private, must-revalidate |
| Content-Encoding
| gzip |
| Content-Type
| text/html; charset=utf-8 |
| Date
| Wed, 19 Aug 2026 22:48:33 GMT |
| Etag
| W/"312955174f7348eb2c44c128a6a2f100" |
| Link
| ; rel=preload; as=style; nopush,; rel=preload; as=script; nopush,; rel=preload; as=script; nopush |
| Referrer-Policy
| strict-origin-when-cross-origin |
| Server
| nginx/1.24.0 (Ubuntu) |
| X-Content-Type-Options
| nosniff |
| X-Frame-Options
| SAMEORIGIN |
| X-Permitted-Cross-Domain-Policies
| none |
| X-Request-Id
| dd31cdc8-703e-4ae1-b76e-432d4bafb365 |
| X-Runtime
| 0.024560 |
| X-Xss-Protection
| 0 |
| Transfer-Encoding
| chunked |
Meta Tags
| Csrf-param | authenticity_token |
| Csrf-token | z8C5Al2gs2HLlwyIlgUezbFaMdS694617RdMLDYjBLlJxhAuoS4JQjbTSY7Pd8iIa62l4g3yk-FfG3mdni0pkA |
Cache-Control max-age=0, private, must-revalidate
Content-Encoding gzip
Content-Type text/html; charset=utf-8
Date Wed, 19 Aug 2026 22:48:33 GMT
Etag W/"312955174f7348eb2c44c128a6a2f100"
Link ; rel=preload; as=style; nopush,; rel=preload; as=script; nopush,; rel=preload; as=script; nopush
Referrer-Policy strict-origin-when-cross-origin
Server nginx/1.24.0 (Ubuntu)
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Permitted-Cross-Domain-Policies none
X-Request-Id dd31cdc8-703e-4ae1-b76e-432d4bafb365
X-Runtime 0.024560
X-Xss-Protection 0
Transfer-Encoding chunked