Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 104.18.17.34 |
| Server Software | cloudflare |
| CDN | Cloudflare |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 104.18.17.34
Server Software cloudflare
CDN Cloudflare
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://portal.legitscript.com:443 | 302 | HTTP/2 302 |
| 2 | https://portal.legitscript.com/login | 200 | HTTP/2 200 |
#1 URL https://portal.legitscript.com:443
HTTP Status Code 302
Status HTTP/2 302
#2 URL https://portal.legitscript.com/login
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 0.6 ms |
| TCP Connect | 2.4 ms |
| TLS Handshake | 7.7 ms |
| Time To First Byte (TTFB) | 723.1 ms |
| Content Download | 0.1 ms |
| Total Response Time | 723.2 ms |
DNS Lookup 0.6 ms
TCP Connect 2.4 ms
TLS Handshake 7.7 ms
Time To First Byte (TTFB) 723.1 ms
Content Download 0.1 ms
Total Response Time 723.2 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title Client Portal
Detected Technologies
Technology Cloudflare
HTTP Headers
| Date
| Thu, 23 Jul 2026 01:24:39 GMT |
| Content-type
| text/html; charset=utf-8 |
| Server
| cloudflare |
| Cache-control
| no-cache, no-store |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| Referrer-policy
| strict-origin-when-cross-origin |
| X-permitted-cross-domain-policies
| none |
| Pragma
| no-cache |
| X-xss-protection
| 1; mode=block |
| X-request-id
| aa6adc59-a0db-4218-ba34-dfe04b77308a |
| X-download-options
| noopen |
| Cf-cache-status
| DYNAMIC |
| X-frame-options
| SAMEORIGIN |
| X-content-type-options
| nosniff |
| Expires
| Fri, 01 Jan 1990 00:00:00 GMT |
| Set-cookie
| _app_session=fa21d84d5249a0c20acdf68233c55221; path=/; expires=Thu, 23 Jul 2026 02:54:39 GMT; secure; HttpOnly; SameSite=Lax |
| Status
| 200 OK |
| Vary
| Accept-Encoding |
| Server-timing
| cfEdge;dur=11,cfOrigin;dur=697 |
| Content-encoding
| gzip |
| Cf-ray
| a1f6e2fda80dd13a-CDG |
Meta Tags
| Csrf-param | authenticity_token |
| Csrf-token | H1CeIavMKhN6fkI1w1Rcdw+yvep9vYsO7eQyfmGyqfOs3y402jJ2DBa7/mXJ8MRiX8FfyMrzhZ8c+gbwt4gu7g== |
Date Thu, 23 Jul 2026 01:24:39 GMT
Content-type text/html; charset=utf-8
Server cloudflare
Cache-control no-cache, no-store
Strict-transport-security max-age=31536000; includeSubDomains
Referrer-policy strict-origin-when-cross-origin
X-permitted-cross-domain-policies none
Pragma no-cache
X-xss-protection 1; mode=block
X-request-id aa6adc59-a0db-4218-ba34-dfe04b77308a
X-download-options noopen
Cf-cache-status DYNAMIC
X-frame-options SAMEORIGIN
X-content-type-options nosniff
Expires Fri, 01 Jan 1990 00:00:00 GMT
Set-cookie _app_session=fa21d84d5249a0c20acdf68233c55221; path=/; expires=Thu, 23 Jul 2026 02:54:39 GMT; secure; HttpOnly; SameSite=Lax
Status 200 OK
Vary Accept-Encoding
Server-timing cfEdge;dur=11,cfOrigin;dur=697
Content-encoding gzip
Cf-ray a1f6e2fda80dd13a-CDG