Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 104.18.5.39 |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 104.18.5.39
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://pandora.ding.com:443 | 302 | HTTP/2 302 |
| 2 | https://pandora.ding.com/swagger/index.html | 302 | HTTP/2 302 |
| 3 | https://login.microsoftonline.com/d3030347-3554-42ac-9661-ce1100ecc290/saml2?SAMLRequest=fFJbT8IwFP4rTRMfd6HDSRqGQQiRBJVw8cEXU9rDaOza2dMJ%2FnvD0ARN5PXku%2Bf0UVSm5sMm7OwC3hvAQKbjgr4qlV3L7SaL2CbPo26e9SKR5jJSSkHWUd3OBgQlz%2BBRO1tQFqeUTBEbmFoMwoaCspTlUXoTsWzFGM%2B6vNt7oWTuXXDSmTttlbZlQRtvuROokVtRAfIg%2BXL4MOMsTvnmBEJ%2Bv1rNo%2FnTckXJEBF80M6OnMWmAr8E%2F6ElrBezgu5CqJEnSS2scl7ER3YsXZVI5940GFdqm9wG4UsIa28K3IuyBH%2FFJtoqOMS7UBlKDpWxyNtliov56u8ydNA%2Fonk7gD%2FjX6aLnyp08DdwPzkTPKnX%2FFFUMB3PndHyk0ycr0T436ATd9qLVtG2hfLGYg1SbzUoSobGuP3IgwhQ0OAboCQZnFx%2Fv8PgCwAA%2F%2F8DAA%3D%3D | 200 | HTTP/1.1 200 OK |
#1 URL https://pandora.ding.com:443
HTTP Status Code 302
Status HTTP/2 302
#2 URL https://pandora.ding.com/swagger/index.html
HTTP Status Code 302
Status HTTP/2 302
#3 URL https://login.microsoftonline.com/d3030347-3554-42ac-9661-ce1100ecc290/saml2?SAMLRequest=fFJbT8IwFP4rTRMfd6HDSRqGQQiRBJVw8cEXU9rDaOza2dMJ%2FnvD0ARN5PXku%2Bf0UVSm5sMm7OwC3hvAQKbjgr4qlV3L7SaL2CbPo26e9SKR5jJSSkHWUd3OBgQlz%2BBRO1tQFqeUTBEbmFoMwoaCspTlUXoTsWzFGM%2B6vNt7oWTuXXDSmTttlbZlQRtvuROokVtRAfIg%2BXL4MOMsTvnmBEJ%2Bv1rNo%2FnTckXJEBF80M6OnMWmAr8E%2F6ElrBezgu5CqJEnSS2scl7ER3YsXZVI5940GFdqm9wG4UsIa28K3IuyBH%2FFJtoqOMS7UBlKDpWxyNtliov56u8ydNA%2Fonk7gD%2FjX6aLnyp08DdwPzkTPKnX%2FFFUMB3PndHyk0ycr0T436ATd9qLVtG2hfLGYg1SbzUoSobGuP3IgwhQ0OAboCQZnFx%2Fv8PgCwAA%2F%2F8DAA%3D%3D
HTTP Status Code 200
Status HTTP/1.1 200 OK
Performance
| DNS Lookup | 6.2 ms |
| TCP Connect | 17.4 ms |
| TLS Handshake | 32.9 ms |
| Time To First Byte (TTFB) | 72.2 ms |
| Content Download | 0.4 ms |
| Total Response Time | 72.5 ms |
DNS Lookup 6.2 ms
TCP Connect 17.4 ms
TLS Handshake 32.9 ms
Time To First Byte (TTFB) 72.2 ms
Content Download 0.4 ms
Total Response Time 72.5 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
| Title | Redirecting |
| Robots Meta | none |
Title Redirecting
Robots Meta none
Detected Technologies
Technology jQuery
HTTP Headers
| Cache-Control
| no-store, no-cache |
| Pragma
| no-cache |
| Content-Type
| text/html; charset=utf-8 |
| Content-Encoding
| gzip |
| Expires
| -1 |
| Vary
| Accept-Encoding |
| Strict-Transport-Security
| max-age=31536000; includeSubDomains |
| X-Content-Type-Options
| nosniff |
| P3P
| CP="DSP CUR OTPi IND OTRi ONL FIN" |
| X-ms-request-id
| ff4f0350-3fd9-443e-8e87-913e72286700 |
| X-ms-ests-server
| 2.1.24997.6 - WEULR1 ProdSlices |
| Report-to
| {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+ams2"}]} |
| Nel
| {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0} |
| X-ms-srs
| 1.P |
| Referrer-Policy
| strict-origin-when-cross-origin |
| Content-Security-Policy-Report-Only
| object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-s05JSCZyoy5BFjIkcoHWkQ' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All |
| X-XSS-Protection
| 0 |
| Date
| Thu, 23 Jul 2026 22:34:48 GMT |
| Content-Length
| 9803 |
Meta Tags
| Content-Type | text/html; charset=UTF-8 |
| X-UA-Compatible | IE=edge |
| Viewport | width=device-width, initial-scale=1.0, maximum-scale=2.0, user-scalable=yes |
| Pragma | no-cache |
| Expires | -1 |
| PageID | BssoInterrupt |
| ReqLC | 1033 |
| LocLC | en-US |
| Robots | none |
Cache-Control no-store, no-cache
Pragma no-cache
Content-Type text/html; charset=utf-8
Content-Encoding gzip
Expires -1
Vary Accept-Encoding
Strict-Transport-Security max-age=31536000; includeSubDomains
X-Content-Type-Options nosniff
P3P CP="DSP CUR OTPi IND OTRi ONL FIN"
X-ms-request-id ff4f0350-3fd9-443e-8e87-913e72286700
X-ms-ests-server 2.1.24997.6 - WEULR1 ProdSlices
Report-to {"group":"network-errors","max_age":86400,"endpoints":[{"url":"https://identity.nel.measure.office.net/api/report?catId=GW+estsfd+ams2"}]}
Nel {"report_to":"network-errors","max_age":86400,"success_fraction":0.001,"failure_fraction":1.0}
X-ms-srs 1.P
Referrer-Policy strict-origin-when-cross-origin
Content-Security-Policy-Report-Only object-src 'none'; base-uri 'self'; script-src 'self' 'nonce-s05JSCZyoy5BFjIkcoHWkQ' 'unsafe-inline' 'unsafe-eval' https://*.msauth.net https://*.msftauth.net https://*.msftauthimages.net https://*.msauthimages.net https://*.msidentity.com https://*.microsoftonline-p.com https://*.microsoftazuread-sso.com https://*.azureedge.net https://*.outlook.com https://*.office.com https://*.office365.com https://*.microsoft.com https://*.bing.com 'report-sample'; report-uri https://csp.microsoft.com/report/ESTS-UX-All
X-XSS-Protection 0
Date Thu, 23 Jul 2026 22:34:48 GMT
Content-Length 9803