Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 5.83.210.1 |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 5.83.210.1
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://surfshop.be:443 | 307 | HTTP/2 307 |
| 2 | https://surfshop.be/en-us | 200 | HTTP/2 200 |
#1 URL https://surfshop.be:443
HTTP Status Code 307
Status HTTP/2 307
#2 URL https://surfshop.be/en-us
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 5.2 ms |
| TCP Connect | 19.8 ms |
| TLS Handshake | 16.7 ms |
| Time To First Byte (TTFB) | 52.4 ms |
| Content Download | 1.9 ms |
| Total Response Time | 54.2 ms |
DNS Lookup 5.2 ms
TCP Connect 19.8 ms
TLS Handshake 16.7 ms
Time To First Byte (TTFB) 52.4 ms
Content Download 1.9 ms
Total Response Time 54.2 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | same-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy same-origin
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
| Technology | Google Analytics Node.js |
Technology Google Analytics Node.js
HTTP Headers
| Accept-ranges
| bytes |
| Alt-svc
| h3=":443"; ma=2592000 |
| Cache-control
| public, s-maxage=900, max-age=0 |
| Content-encoding
| gzip |
| Content-type
| text/html; charset=utf-8 |
| Date
| Tue, 28 Jul 2026 17:41:19 GMT |
| Etag
| "dk6ojml0tbdr3xq" |
| Last-modified
| Fri, 24 Jul 2026 09:03:10 GMT |
| Link
| ; rel=preload; as=fetch; crossorigin=anonymous |
| Referrer-policy
| same-origin |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| Vary
| Accept-Encoding |
| Via
| 1.1 Caddy |
| X-content-type-options
| nosniff |
| X-frame-options
| SAMEORIGIN |
| X-nameshift-region
| ams |
Meta Tags
| Msapplication-TileColor | #da532c |
| Theme-color | #ffffff |
| Viewport | width=device-width, initial-scale=1 |
Accept-ranges bytes
Alt-svc h3=":443"; ma=2592000
Cache-control public, s-maxage=900, max-age=0
Content-encoding gzip
Content-type text/html; charset=utf-8
Date Tue, 28 Jul 2026 17:41:19 GMT
Etag "dk6ojml0tbdr3xq"
Last-modified Fri, 24 Jul 2026 09:03:10 GMT
Link ; rel=preload; as=fetch; crossorigin=anonymous
Referrer-policy same-origin
Strict-transport-security max-age=31536000; includeSubDomains
Vary Accept-Encoding
Via 1.1 Caddy
X-content-type-options nosniff
X-frame-options SAMEORIGIN
X-nameshift-region ams