Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 99.83.231.61 |
| Server Software | Netlify |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 99.83.231.61
Server Software Netlify
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://samanthachan.net:443 | 301 | HTTP/2 301 |
| 2 | https://www.samanthachan.net/ | 200 | HTTP/2 200 |
#1 URL https://samanthachan.net:443
HTTP Status Code 301
Status HTTP/2 301
#2 URL https://www.samanthachan.net/
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 39.1 ms |
| TCP Connect | 48.9 ms |
| TLS Handshake | 131.3 ms |
| Time To First Byte (TTFB) | 520.6 ms |
| Content Download | 8.7 ms |
| Total Response Time | 529.3 ms |
DNS Lookup 39.1 ms
TCP Connect 48.9 ms
TLS Handshake 131.3 ms
Time To First Byte (TTFB) 520.6 ms
Content Download 8.7 ms
Total Response Time 529.3 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| Permissions Policy | ✔ Configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
Permissions Policy ✔ Configured
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Detected Technologies
| Technology | jQuery Google Analytics |
Technology jQuery Google Analytics
HTTP Headers
| Accept-ranges
| bytes |
| Age
| 0 |
| Cache-control
| public,max-age=0,must-revalidate |
| Cache-status
| "Netlify Edge"; fwd=miss |
| Content-encoding
| gzip |
| Content-type
| text/html; charset=UTF-8 |
| Date
| Fri, 24 Jul 2026 14:50:55 GMT |
| Etag
| "31af05894bd2b96477e88b0295456d1a-ssl-df" |
| Permissions-policy
| accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=() |
| Referrer-policy
| strict-origin-when-cross-origin |
| Server
| Netlify |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| Vary
| Accept-Encoding |
| X-content-type-options
| nosniff |
| X-nf-request-id
| 01KYA9Q85NKTHPZ7HSV6TGTR2V |
| X-xss-protection
| 1; mode=block |
Meta Tags
Accept-ranges bytes
Age 0
Cache-control public,max-age=0,must-revalidate
Cache-status "Netlify Edge"; fwd=miss
Content-encoding gzip
Content-type text/html; charset=UTF-8
Date Fri, 24 Jul 2026 14:50:55 GMT
Etag "31af05894bd2b96477e88b0295456d1a-ssl-df"
Permissions-policy accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
Referrer-policy strict-origin-when-cross-origin
Server Netlify
Strict-transport-security max-age=31536000; includeSubDomains
Vary Accept-Encoding
X-content-type-options nosniff
X-nf-request-id 01KYA9Q85NKTHPZ7HSV6TGTR2V
X-xss-protection 1; mode=block