Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 194.6.195.207 |
| Server Software | nginx |
| CDN | CDN (Miss from cloudfront) |
| Compression | gzip |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 194.6.195.207
Server Software nginx
CDN CDN (Miss from cloudfront)
Compression gzip
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://steinberg.net:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.steinberg.net/ | 200 | HTTP/2 200 |
#1 URL https://steinberg.net:443
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#2 URL https://www.steinberg.net/
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 18 ms |
| TCP Connect | 18.9 ms |
| TLS Handshake | 4.9 ms |
| Time To First Byte (TTFB) | 116.2 ms |
| Content Download | 0.7 ms |
| Total Response Time | 116.9 ms |
DNS Lookup 18 ms
TCP Connect 18.9 ms
TLS Handshake 4.9 ms
Time To First Byte (TTFB) 116.2 ms
Content Download 0.7 ms
Total Response Time 116.9 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubdomains; preload |
| CSP | ✔ Configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| Permissions Policy | ✔ Configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubdomains; preload
CSP ✔ Configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
Permissions Policy ✔ Configured
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
| Technology | Google Analytics Google Tag Manager Nginx Node.js Hotjar |
Technology Google Analytics Google Tag Manager Nginx Node.js Hotjar
HTTP Headers
| Content-type
| text/html; charset=utf-8 |
| Date
| Tue, 21 Jul 2026 19:38:01 GMT |
| Permissions-policy
| camera=(),gamepad=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),usb=() |
| Referrer-policy
| strict-origin-when-cross-origin |
| Server
| nginx |
| Access-control-allow-origin
| http://localhost:3001 |
| Vary
| Origin, Accept-Encoding |
| Access-control-allow-credentials
| true |
| Cache-control
| public, max-age=3600 |
| Etag
| W/"1b4a4-ItKmZIULpYB4pn2RcNJvuHivAhw" |
| Content-encoding
| gzip |
| Content-security-policy
| default-src https: 'self' 'unsafe-inline' 'unsafe-eval' *.steinberg.net *.usercentrics.eu *.personio.de *.personio.com *.googletagmanager.com fonts.googleapis.com *.soundcloud.com *.youtube-nocookie.com *.optimizely.com *.eu-central-1.compute.amazonaws.com *.onfastspring.com *.impactcdn.com *.twitch.tv *.twitchcdn.net; connect-src https: 'self' wss://ws.hotjar.com; img-src https: 'self' *.steinberg.net *.ytimg.com *.usercentrics.eu data:; font-src https: 'self' fonts.gstatic.com fonts.googleapis.com data:; |
| X-frame-options
| SAMEORIGIN |
| X-content-type-options
| nosniff |
| Feature-policy
| camera 'none';gamepad 'none';geolocation 'none';gyroscope 'none';magnetometer 'none';microphone 'none';usb 'none' |
| Via
| 1.1 b76ab09d3ce4fcd767d0eab0ed23eaec.cloudfront.net (CloudFront) |
| Alt-svc
| h3=":443"; ma=86400 |
| Strict-transport-security
| max-age=31536000; includeSubdomains; preload |
| X-cache
| Miss from cloudfront |
| X-amz-cf-pop
| CDG52-P6 |
| X-amz-cf-id
| C1bwP1yxqGLLJ5o3c_FKj1AkkaQxxVpbYbYTmWCTaB30YpwBtV2XAA== |
Meta Tags
| Content-Type | text/html; charset=utf-8 |
| X-ua-compatible | ie=edge |
| Viewport | width=device-width, initial-scale=1, shrink-to-fit=no |
| Theme-color | #000000 |
| Msapplication-TileImage |  |
| Msapplication-TileColor | #ffffff |
| Msapplication-config | /browserconfig.xml |
| Msapplication-square70x70logo |  |
| Msapplication-square150x150logo |  |
| Msapplication-wide310x150logo |  |
| Msapplication-square310x310logo |  |
| Apple-mobile-web-app-capable | yes |
| Apple-mobile-web-app-status-bar-style | black |
Content-type text/html; charset=utf-8
Date Tue, 21 Jul 2026 19:38:01 GMT
Permissions-policy camera=(),gamepad=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),usb=()
Referrer-policy strict-origin-when-cross-origin
Server nginx
Access-control-allow-origin http://localhost:3001
Vary Origin, Accept-Encoding
Access-control-allow-credentials true
Cache-control public, max-age=3600
Etag W/"1b4a4-ItKmZIULpYB4pn2RcNJvuHivAhw"
Content-encoding gzip
Content-security-policy default-src https: 'self' 'unsafe-inline' 'unsafe-eval' *.steinberg.net *.usercentrics.eu *.personio.de *.personio.com *.googletagmanager.com fonts.googleapis.com *.soundcloud.com *.youtube-nocookie.com *.optimizely.com *.eu-central-1.compute.amazonaws.com *.onfastspring.com *.impactcdn.com *.twitch.tv *.twitchcdn.net; connect-src https: 'self' wss://ws.hotjar.com; img-src https: 'self' *.steinberg.net *.ytimg.com *.usercentrics.eu data:; font-src https: 'self' fonts.gstatic.com fonts.googleapis.com data:;
X-frame-options SAMEORIGIN
X-content-type-options nosniff
Feature-policy camera 'none';gamepad 'none';geolocation 'none';gyroscope 'none';magnetometer 'none';microphone 'none';usb 'none'
Via 1.1 b76ab09d3ce4fcd767d0eab0ed23eaec.cloudfront.net (CloudFront)
Alt-svc h3=":443"; ma=86400
Strict-transport-security max-age=31536000; includeSubdomains; preload
X-cache Miss from cloudfront
X-amz-cf-pop CDG52-P6
X-amz-cf-id C1bwP1yxqGLLJ5o3c_FKj1AkkaQxxVpbYbYTmWCTaB30YpwBtV2XAA==