Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 216.223.155.118 |
| CDN | CDN (Miss from cloudfront) |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 216.223.155.118
CDN CDN (Miss from cloudfront)
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://the-scientist.com:443 | 301 | HTTP/2 301 |
| 2 | https://www.the-scientist.com/ | 200 | HTTP/2 200 |
#1 URL https://the-scientist.com:443
HTTP Status Code 301
Status HTTP/2 301
#2 URL https://www.the-scientist.com/
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 10.5 ms |
| TCP Connect | 11.8 ms |
| TLS Handshake | 6.2 ms |
| Time To First Byte (TTFB) | 514.9 ms |
| Content Download | 105.7 ms |
| Total Response Time | 620.5 ms |
DNS Lookup 10.5 ms
TCP Connect 11.8 ms
TLS Handshake 6.2 ms
Time To First Byte (TTFB) 514.9 ms
Content Download 105.7 ms
Total Response Time 620.5 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=63072000; includeSubDomains; preload |
| CSP | ⚠ Not configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ⚠ Not configured |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=63072000; includeSubDomains; preload
CSP ⚠ Not configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ⚠ Not configured
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
| Technology | React Google Analytics PHP Node.js Next.js |
Technology React Google Analytics PHP Node.js Next.js
HTTP Headers
| Content-type
| text/html; charset=utf-8 |
| Referrer-policy
| strict-origin-when-cross-origin |
| Cache-control
| private, no-cache, no-store, max-age=0, must-revalidate |
| X-powered-by
| Next.js |
| Etag
| "44azaelpjm5g08" |
| Vary
| Origin |
| Content-encoding
| gzip |
| Date
| Fri, 24 Jul 2026 19:09:53 GMT |
| Strict-transport-security
| max-age=63072000; includeSubDomains; preload |
| X-cache
| Miss from cloudfront |
| Via
| 1.1 d957d6771972dc316c9303040c17c830.cloudfront.net (CloudFront) |
| X-amz-cf-pop
| CDG54-P1 |
| X-amz-cf-id
| 3Wiys7D1yAKUZ-UkK5cW9j46bvhjcTb6PS6PKBPcrXq2d4h7EErPww== |
Meta Tags
| Viewport | width=device-width |
Content-type text/html; charset=utf-8
Referrer-policy strict-origin-when-cross-origin
Cache-control private, no-cache, no-store, max-age=0, must-revalidate
X-powered-by Next.js
Etag "44azaelpjm5g08"
Vary Origin
Content-encoding gzip
Date Fri, 24 Jul 2026 19:09:53 GMT
Strict-transport-security max-age=63072000; includeSubDomains; preload
X-cache Miss from cloudfront
Via 1.1 d957d6771972dc316c9303040c17c830.cloudfront.net (CloudFront)
X-amz-cf-pop CDG54-P1
X-amz-cf-id 3Wiys7D1yAKUZ-UkK5cW9j46bvhjcTb6PS6PKBPcrXq2d4h7EErPww==