Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 161.53.2.88 |
| Server Software | Apache |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 161.53.2.88
Server Software Apache
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://srce.hr:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.srce.unizg.hr/ | 200 | HTTP/1.1 200 OK |
#1 URL https://srce.hr:443
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#2 URL https://www.srce.unizg.hr/
HTTP Status Code 200
Status HTTP/1.1 200 OK
Performance
| DNS Lookup | 103.9 ms |
| TCP Connect | 134.5 ms |
| TLS Handshake | 35.1 ms |
| Time To First Byte (TTFB) | 397.3 ms |
| Content Download | 120 ms |
| Total Response Time | 517.3 ms |
DNS Lookup 103.9 ms
TCP Connect 134.5 ms
TLS Handshake 35.1 ms
Time To First Byte (TTFB) 397.3 ms
Content Download 120 ms
Total Response Time 517.3 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
| Title | Srce | Sveučilišni računski centar (Srce) |
| Canonical | https://www.srce.unizg.hr/ |
Title Srce | Sveučilišni računski centar (Srce)
Canonical https://www.srce.unizg.hr/
Detected Technologies
| Technology | Drupal Bootstrap jQuery Google Analytics Google Tag Manager Apache |
Technology Drupal Bootstrap jQuery Google Analytics Google Tag Manager Apache
HTTP Headers
| Date
| Mon, 20 Jul 2026 15:25:22 GMT |
| Server
| Apache |
| Cache-Control
| must-revalidate, no-cache, private |
| X-Drupal-Dynamic-Cache
| HIT |
| Link
| ; rel="manifest", ; rel="apple-touch-icon" |
| Content-language
| hr |
| X-Content-Type-Options
| nosniff |
| X-Frame-Options
| SAMEORIGIN |
| Expires
| Sun, 19 Nov 1978 05:00:00 GMT |
| X-Generator
| Drupal 10 (https://www.drupal.org) |
| X-Drupal-Cache
| UNCACHEABLE (response policy) |
| X-XSS-Protection
| 1; mode=block |
| Strict-Transport-Security
| max-age=31536000; includeSubDomains |
| Referrer-Policy
| strict-origin |
| Transfer-Encoding
| chunked |
| Content-Type
| text/html; charset=UTF-8 |
Meta Tags
| Generator | Drupal 10 (https://www.drupal.org) |
| MobileOptimized | width |
| HandheldFriendly | true |
| Viewport | width=device-width, initial-scale=1.0 |
Date Mon, 20 Jul 2026 15:25:22 GMT
Server Apache
Cache-Control must-revalidate, no-cache, private
X-Drupal-Dynamic-Cache HIT
Link ; rel="manifest", ; rel="apple-touch-icon"
Content-language hr
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
Expires Sun, 19 Nov 1978 05:00:00 GMT
X-Generator Drupal 10 (https://www.drupal.org)
X-Drupal-Cache UNCACHEABLE (response policy)
X-XSS-Protection 1; mode=block
Strict-Transport-Security max-age=31536000; includeSubDomains
Referrer-Policy strict-origin
Transfer-Encoding chunked
Content-Type text/html; charset=UTF-8