HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code301 (Redirect) HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address18.238.80.4 Server SoftwareCloudFront CDNAWS CloudFront ⚠ 🔴Connection ErrorUnrecognized content encoding type. libcurl understands deflate, gzip content encodings. ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
18 ms
TCP Connect
93.9 ms
TLS Handshake
79 ms
Time To First Byte (TTFB)
277.9 ms
Content Download
0 ms
Total Response Time
278 ms
DNS Lookup18 ms TCP Connect93.9 ms TLS Handshake79 ms Time To First Byte (TTFB)277.9 ms Content Download0 ms Total Response Time278 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured HTTP/2⚠ HTTP/1.1