Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 12.130.132.46 |
| Compression | gzip |
|
🔄 🟡 Long Redirect Chain | There are 4 redirects, which may affect SEO and performance. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 12.130.132.46
Compression gzip
🔄 🟡 Long Redirect Chain There are 4 redirects, which may affect SEO and performance.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://uptodate.com:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.uptodate.com/ | 301 | HTTP/1.1 301 Moved Permanently |
| 3 | https://www.uptodate.com/index | 302 | HTTP/1.1 302 302 |
| 4 | https://www.uptodate.com/login | 200 | HTTP/1.1 200 200 |
#1 URL https://uptodate.com:443
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#2 URL https://www.uptodate.com/
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#3 URL https://www.uptodate.com/index
HTTP Status Code 302
Status HTTP/1.1 302 302
#4 URL https://www.uptodate.com/login
HTTP Status Code 200
Status HTTP/1.1 200 200
Performance
| DNS Lookup | 0.5 ms |
| TCP Connect | 11.7 ms |
| TLS Handshake | 15.3 ms |
| Time To First Byte (TTFB) | 70.9 ms |
| Content Download | 0.1 ms |
| Total Response Time | 71 ms |
DNS Lookup 0.5 ms
TCP Connect 11.7 ms
TLS Handshake 15.3 ms
Time To First Byte (TTFB) 70.9 ms
Content Download 0.1 ms
Total Response Time 71 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; |
| CSP | ✔ Configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000;
CSP ✔ Configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title UpToDate
Detected Technologies
| Technology | jQuery Google Analytics Google Tag Manager |
Technology jQuery Google Analytics Google Tag Manager
HTTP Headers
| Date
| Fri, 24 Jul 2026 20:50:25 GMT |
| Strict-Transport-Security
| max-age=31536000; |
| X-UA-Compatible
| IE=Edge |
| Content-Security-Policy-Report-Only
| default-src https: data: https://www.uptodate.com https://www.uptodate.cn; child-src https: data: blob: edge: brave: puffin:; img-src data: https: blob: https://www.uptodate.com https://www.uptodate.cn https://*.d.aa.online-metrix.net https://cdn.cookielaw.org https://app.pendo.uptodate.com https://cdn.wolterskluwer.io; font-src https: data: https://www.uptodate.com https://www.uptodate.cn; worker-src blob: brave: edge: puffin: https://www.uptodate.com https://www.uptodate.cn; media-src data: https: https://www.uptodate.com https://www.uptodate.cn; connect-src data: https: wss: https://www.uptodate.com https://www.uptodate.cn https://geolocation.onetrust.com https://cdn.cookielaw.org https://app.pendo.uptodate.com https://privacyportal-de.onetrust.com; script-src 'unsafe-inline' 'unsafe-eval' https: https://www.uptodate.com https://www.uptodate.cn https://cdn.cookielaw.org https://cdn.pendo.uptodate.com https://www.googletagmanager.com https://tmx.uptodate.com https://rollouts.cdn.uptodate.com https://www.google-analytics.com https://code.jquery.com; style-src 'unsafe-inline' https: https://www.uptodate.com https://www.uptodate.cn https://cdn.pendo.uptodate.com; frame-src https: https://www.uptodate.com https://www.uptodate.cn baiduboxapp: ms-appx-web:; report-uri /services/app/content-security-policy-report/report/json;frame-ancestors *; |
| Content-Security-Policy
| frame-ancestors *; |
| X-Content-Type-Options
| nosniff |
| Referrer-Policy
| strict-origin-when-cross-origin |
| X-XSS-Protection
| 1; mode=block |
| Cache-Control
| no-cache, no-store, must-revalidate, max-age=0 |
| P3P
| policyref="https://www.uptodate.com/w3c/p3p.xml",CP="ADMo DEVa TAIa OUR PUR COM NAV STA" |
| Pragma
| no-cache |
| Expires
| Thu, 01 Jan 1970 00:00:00 GMT |
| Accept-Ranges
| bytes |
| ETag
| W/"2926-1782247845000-gzip" |
| Last-Modified
| Tue, 23 Jun 2026 20:50:45 GMT |
| Vary
| Accept-Encoding |
| Content-Encoding
| gzip |
| Content-Length
| 1205 |
| Content-Type
| text/html;charset=UTF-8 |
Meta Tags
| X-UA-Compatible | IE=Edge |
| Viewport | width=device-width, initial-scale=1.0, minimum-scale=1.0, maximum-scale=1.0 |
| Apple-mobile-web-app-title | UpToDate |
| Format-detection | telephone=no |
| Fragment | ! |
Date Fri, 24 Jul 2026 20:50:25 GMT
Strict-Transport-Security max-age=31536000;
X-UA-Compatible IE=Edge
Content-Security-Policy-Report-Only default-src https: data: https://www.uptodate.com https://www.uptodate.cn; child-src https: data: blob: edge: brave: puffin:; img-src data: https: blob: https://www.uptodate.com https://www.uptodate.cn https://*.d.aa.online-metrix.net https://cdn.cookielaw.org https://app.pendo.uptodate.com https://cdn.wolterskluwer.io; font-src https: data: https://www.uptodate.com https://www.uptodate.cn; worker-src blob: brave: edge: puffin: https://www.uptodate.com https://www.uptodate.cn; media-src data: https: https://www.uptodate.com https://www.uptodate.cn; connect-src data: https: wss: https://www.uptodate.com https://www.uptodate.cn https://geolocation.onetrust.com https://cdn.cookielaw.org https://app.pendo.uptodate.com https://privacyportal-de.onetrust.com; script-src 'unsafe-inline' 'unsafe-eval' https: https://www.uptodate.com https://www.uptodate.cn https://cdn.cookielaw.org https://cdn.pendo.uptodate.com https://www.googletagmanager.com https://tmx.uptodate.com https://rollouts.cdn.uptodate.com https://www.google-analytics.com https://code.jquery.com; style-src 'unsafe-inline' https: https://www.uptodate.com https://www.uptodate.cn https://cdn.pendo.uptodate.com; frame-src https: https://www.uptodate.com https://www.uptodate.cn baiduboxapp: ms-appx-web:; report-uri /services/app/content-security-policy-report/report/json;frame-ancestors *;
Content-Security-Policy frame-ancestors *;
X-Content-Type-Options nosniff
Referrer-Policy strict-origin-when-cross-origin
X-XSS-Protection 1; mode=block
Cache-Control no-cache, no-store, must-revalidate, max-age=0
P3P policyref="https://www.uptodate.com/w3c/p3p.xml",CP="ADMo DEVa TAIa OUR PUR COM NAV STA"
Pragma no-cache
Expires Thu, 01 Jan 1970 00:00:00 GMT
Accept-Ranges bytes
ETag W/"2926-1782247845000-gzip"
Last-Modified Tue, 23 Jun 2026 20:50:45 GMT
Vary Accept-Encoding
Content-Encoding gzip
Content-Length 1205
Content-Type text/html;charset=UTF-8