Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 150.171.110.117 |
|
🔒 🟡 Mixed Content (1 HTTP resources) | The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers. |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 150.171.110.117
🔒 🟡 Mixed Content (1 HTTP resources) The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers.
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
| DNS Lookup | 44.4 ms |
| TCP Connect | 45.6 ms |
| TLS Handshake | 6.1 ms |
| Time To First Byte (TTFB) | 460.8 ms |
| Content Download | 0 ms |
| Total Response Time | 460.9 ms |
DNS Lookup 44.4 ms
TCP Connect 45.6 ms
TLS Handshake 6.1 ms
Time To First Byte (TTFB) 460.8 ms
Content Download 0 ms
Total Response Time 460.9 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains; preload |
| CSP | ✔ Configured |
| X-Frame-Options | ✔ sameorigin |
| X-Content-Type-Options | ✔ nosniff |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains; preload
CSP ✔ Configured
X-Frame-Options ✔ sameorigin
X-Content-Type-Options ✔ nosniff
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title BlueFire Giving
Detected Technologies
| Technology | Google Analytics Google Tag Manager Intercom |
Technology Google Analytics Google Tag Manager Intercom
HTTP Headers
| Date
| Wed, 19 Aug 2026 22:27:37 GMT |
| Content-type
| text/html |
| Content-length
| 1801 |
| Cache-control
| private |
| Set-cookie
| ASPSESSIONIDSUBSRRQR=LFNFDDFBGACGMMLACGAKAJOG; secure; path=/; HttpOnly |
| Strict-transport-security
| max-age=31536000; includeSubDomains; preload |
| X-powered-by
| ASP.NET |
| X-content-type-options
| nosniff |
| X-xss-protection
| 1; mode=block |
| X-frame-options
| sameorigin |
| Content-security-policy
| default-src https:; connect-src https: wss://nexus-websocket-a.intercom.io wss://nexus-websocket-b.intercom.io; font-src https: data:; frame-src https:; img-src https: data:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; style-src 'unsafe-inline' https:; frame-ancestors https:; report-uri https://api.mbgiving.com/Internal/CSPReportUri; |
| X-azure-ref
| 20260819T222736Z-r1dcc4897d7kn5hnhC1PARe48w0000001pqg00000000c342 |
| X-cache
| CONFIG_NOCACHE |
| Accept-ranges
| bytes |
Date Wed, 19 Aug 2026 22:27:37 GMT
Content-type text/html
Content-length 1801
Cache-control private
Set-cookie ASPSESSIONIDSUBSRRQR=LFNFDDFBGACGMMLACGAKAJOG; secure; path=/; HttpOnly
Strict-transport-security max-age=31536000; includeSubDomains; preload
X-powered-by ASP.NET
X-content-type-options nosniff
X-xss-protection 1; mode=block
X-frame-options sameorigin
Content-security-policy default-src https:; connect-src https: wss://nexus-websocket-a.intercom.io wss://nexus-websocket-b.intercom.io; font-src https: data:; frame-src https:; img-src https: data:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; style-src 'unsafe-inline' https:; frame-ancestors https:; report-uri https://api.mbgiving.com/Internal/CSPReportUri;
X-azure-ref 20260819T222736Z-r1dcc4897d7kn5hnhC1PARe48w0000001pqg00000000c342
X-cache CONFIG_NOCACHE
Accept-ranges bytes