HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵Missing Content Security Policy
CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵Missing X-Frame-Options
The site can be embedded in iframes by third parties (clickjacking risk).
HTTP Status Code200 HTTP VersionHTTP/1.1 HTTPS✔ Available IP Address192.238.176.102 Server Softwarenginx CDNCDN (HIT, policy, disk) Compressiongzip ℹ 🔵Missing HSTSHTTP Strict Transport Security is not configured. Recommended for HTTPS sites. ℹ 🔵Missing Content Security PolicyCSP is not configured. It helps prevent XSS attacks and content injection. ℹ 🔵Missing X-Frame-OptionsThe site can be embedded in iframes by third parties (clickjacking risk).
Performance
DNS Lookup
4.1 ms
TCP Connect
190.7 ms
TLS Handshake
195 ms
Time To First Byte (TTFB)
572.5 ms
Content Download
0.1 ms
Total Response Time
572.6 ms
DNS Lookup4.1 ms TCP Connect190.7 ms TLS Handshake195 ms Time To First Byte (TTFB)572.5 ms Content Download0.1 ms Total Response Time572.6 ms
Security
HTTPS
✔ Enabled
HSTS
✘ Not configured
CSP
⚠ Not configured
X-Frame-Options
⚠ Not configured
X-Content-Type-Options
⚠ Not configured
HTTP/2
⚠ HTTP/1.1
HTTPS✔ Enabled HSTS✘ Not configured CSP⚠ Not configured X-Frame-Options⚠ Not configured X-Content-Type-Options⚠ Not configured HTTP/2⚠ HTTP/1.1
Detected Technologies
Technology
Nginx
TechnologyNginx
HTTP Headers
Access-control-allow-origin
*
Cache-control
no-store, no-cache
Content-encoding
gzip
Content-type
text/html; charset=UTF-8
Date
Wed, 19 Aug 2026 07:11:44 GMT
Etag
"1787123504"
Last-modified
Wed, 19 Aug 2026 07:11:44 GMT
Server
nginx
Vary
Accept-Encoding
X-cache
HIT, policy, disk
X-powered-by
PHP/5.4.16
Content-length
165
Access-control-allow-origin* Cache-controlno-store, no-cache Content-encodinggzip Content-typetext/html; charset=UTF-8 DateWed, 19 Aug 2026 07:11:44 GMT Etag"1787123504" Last-modifiedWed, 19 Aug 2026 07:11:44 GMT Servernginx VaryAccept-Encoding X-cacheHIT, policy, disk X-powered-byPHP/5.4.16 Content-length165