Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 40.89.242.76 |
| Server Software | evolve |
|
🕐 🟡 Slow Response (1679 ms) | Response time exceeds 1 second. Consider optimizing the server or using caching. |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 40.89.242.76
Server Software evolve
🕐 🟡 Slow Response (1679 ms) Response time exceeds 1 second. Consider optimizing the server or using caching.
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
| DNS Lookup | 18.7 ms |
| TCP Connect | 127.3 ms |
| TLS Handshake | 115.2 ms |
| Time To First Byte (TTFB) | 1027.9 ms |
| Content Download | 651.2 ms |
| Total Response Time | 1679.1 ms |
DNS Lookup 18.7 ms
TCP Connect 127.3 ms
TLS Handshake 115.2 ms
Time To First Byte (TTFB) 1027.9 ms
Content Download 651.2 ms
Total Response Time 1679.1 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| Permissions Policy | ✔ Configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
Permissions Policy ✔ Configured
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
| Title | Portland, ME - Official Website | Official Website |
Title Portland, ME - Official Website | Official Website
Detected Technologies
| Technology | Google Analytics Google Tag Manager |
Technology Google Analytics Google Tag Manager
HTTP Headers
| Date
| Tue, 28 Jul 2026 09:54:28 GMT |
| Content-type
| text/html; charset=utf-8 |
| Content-length
| 566558 |
| X-cache-status
| MISS |
| Cache-control
| public, must-revalidate, proxy-revalidate, max-age=1, s-maxage=109, stale-if-error |
| Request-context
| appId=cid-v1:cd12a649-6132-4c93-8c7b-649841af9773 |
| Served-by
| engage6-cms-5fb7bcd7f4-mtqxb |
| X-frame-options
| SAMEORIGIN |
| X-content-type-options
| nosniff |
| Permissions-policy
| camera=(), geolocation=(), microphone=(), usb=(), fullscreen=(self) |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| Referrer-policy
| strict-origin-when-cross-origin |
| X-authenticated
| false |
| Link
| ; nopush; rel=preconnect, ; nopush; rel=preconnect, ; nopush; rel=preconnect, ; as=script; nopush; rel=preload, ; nopush; rel=preconnect, ; as=script; nopush; rel=preload, ; as=image; nopush; rel=preload, ; as=image; nopush; rel=preload, <>; imagesrcset="https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=300&mode=min 300w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=600&mode=min 600w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=900&mode=min 900w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=1280&mode=min 1280w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=1920&mode=min 1920w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=2200&mode=min 2200w"; imagesizes="(max-width: 300px) 280px,(max-width: 600px) 580px,(max-width: 900px) 880px,(max-width: 1280px) 1260px,(max-width: 1920px) 1900px,2180px"; as=image; nopush; crossorigin; rel=preload |
| Content-security-policy-report-only
| default-src * 'self'; style-src * 'self' 'unsafe-inline'; img-src * 'self' data: blob:; script-src * 'self' about: 'unsafe-inline' 'unsafe-eval' data:; worker-src * 'self' data: blob: 'unsafe-eval' 'unsafe-inline'; frame-src * 'self'; media-src 'self' blob: *; font-src * 'self' data:; upgrade-insecure-requests; form-action 'self'; frame-ancestors 'self';report-uri /contentsecuritypolicy/report |
| Server
| evolve |
| X-cache-404-status
| MISS |
Date Tue, 28 Jul 2026 09:54:28 GMT
Content-type text/html; charset=utf-8
Content-length 566558
X-cache-status MISS
Cache-control public, must-revalidate, proxy-revalidate, max-age=1, s-maxage=109, stale-if-error
Request-context appId=cid-v1:cd12a649-6132-4c93-8c7b-649841af9773
Served-by engage6-cms-5fb7bcd7f4-mtqxb
X-frame-options SAMEORIGIN
X-content-type-options nosniff
Permissions-policy camera=(), geolocation=(), microphone=(), usb=(), fullscreen=(self)
Strict-transport-security max-age=31536000; includeSubDomains
Referrer-policy strict-origin-when-cross-origin
X-authenticated false
Link ; nopush; rel=preconnect, ; nopush; rel=preconnect, ; nopush; rel=preconnect, ; as=script; nopush; rel=preload, ; nopush; rel=preconnect, ; as=script; nopush; rel=preload, ; as=image; nopush; rel=preload, ; as=image; nopush; rel=preload, <>; imagesrcset="https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=300&mode=min 300w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=600&mode=min 600w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=900&mode=min 900w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=1280&mode=min 1280w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=1920&mode=min 1920w,https://content.civicplus.com/api/assets/841088b5-dee3-405e-a0a7-fccfd8fe6676?width=2200&mode=min 2200w"; imagesizes="(max-width: 300px) 280px,(max-width: 600px) 580px,(max-width: 900px) 880px,(max-width: 1280px) 1260px,(max-width: 1920px) 1900px,2180px"; as=image; nopush; crossorigin; rel=preload
Content-security-policy-report-only default-src * 'self'; style-src * 'self' 'unsafe-inline'; img-src * 'self' data: blob:; script-src * 'self' about: 'unsafe-inline' 'unsafe-eval' data:; worker-src * 'self' data: blob: 'unsafe-eval' 'unsafe-inline'; frame-src * 'self'; media-src 'self' blob: *; font-src * 'self' data:; upgrade-insecure-requests; form-action 'self'; frame-ancestors 'self';report-uri /contentsecuritypolicy/report
Server evolve
X-cache-404-status MISS