HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
ℹ 🔵No Compression
The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
HTTP Status Code301 (Redirect) HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address37.59.251.196 ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk). ℹ 🔵No CompressionThe server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
DNS Lookup
22.8 ms
TCP Connect
31.4 ms
TLS Handshake
12 ms
Time To First Byte (TTFB)
88.8 ms
Content Download
0.1 ms
Total Response Time
88.9 ms
DNS Lookup22.8 ms TCP Connect31.4 ms TLS Handshake12 ms Time To First Byte (TTFB)88.8 ms Content Download0.1 ms Total Response Time88.9 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured HTTP/2⚠ HTTP/1.1
HTTP Headers
Location
https:\/\/www.lyon.fr/
Content-length
0
Date
Thu, 20 Aug 2026 15:08:40 GMT
Locationhttps:\/\/www.lyon.fr/ Content-length0 DateThu, 20 Aug 2026 15:08:40 GMT