Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 185.161.192.68 |
| Server Software | Apache |
| Compression | deflate |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 185.161.192.68
Server Software Apache
Compression deflate
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://winkler-sandrini.it:443 | 301 | HTTP/2 301 |
| 2 | https://winkler-sandrini.it/de/ | 200 | HTTP/2 200 |
#1 URL https://winkler-sandrini.it:443
HTTP Status Code 301
Status HTTP/2 301
#2 URL https://winkler-sandrini.it/de/
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 4.1 ms |
| TCP Connect | 26.3 ms |
| TLS Handshake | 31.9 ms |
| Time To First Byte (TTFB) | 399.7 ms |
| Content Download | 0.4 ms |
| Total Response Time | 400.1 ms |
DNS Lookup 4.1 ms
TCP Connect 26.3 ms
TLS Handshake 31.9 ms
Time To First Byte (TTFB) 399.7 ms
Content Download 0.4 ms
Total Response Time 400.1 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains; preload |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains; preload
CSP ⚠ Not configured
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title Willkommen
Detected Technologies
| Technology | Joomla jQuery Google Analytics Apache |
Technology Joomla jQuery Google Analytics Apache
HTTP Headers
| X-frame-options
| SAMEORIGIN |
| Referrer-policy
| strict-origin-when-cross-origin |
| Cross-origin-opener-policy
| same-origin |
| Strict-transport-security
| max-age=31536000; includeSubDomains; preload |
| Content-security-policy-report-only
| frame-ancestors 'self' |
| Content-encoding
| deflate |
| Vary
| Accept-Encoding |
| Expires
| Wed, 17 Aug 2005 00:00:00 GMT |
| Cache-control
| no-store, no-cache, must-revalidate, post-check=0, pre-check=0 |
| Pragma
| no-cache |
| Set-cookie
| 39dc92ffc6a490c2caad098a5e144d5d=526f4b2ad67e127632c6299abdb337ec; path=/; secure; HttpOnly |
| X-content-type-options
| nosniff |
| Last-modified
| Wed, 29 Jul 2026 01:05:16 GMT |
| Content-type
| text/html; charset=utf-8 |
| Date
| Wed, 29 Jul 2026 01:05:16 GMT |
| Server
| Apache |
Meta Tags
| Author | admin |
| Generator | Joomla! - Open Source Content Management |
| Viewport | width=device-width, initial-scale=1, maximum-scale=1, user-scalable=yes |
| HandheldFriendly | true |
| Apple-mobile-web-app-capable | YES |
X-frame-options SAMEORIGIN
Referrer-policy strict-origin-when-cross-origin
Cross-origin-opener-policy same-origin
Strict-transport-security max-age=31536000; includeSubDomains; preload
Content-security-policy-report-only frame-ancestors 'self'
Content-encoding deflate
Vary Accept-Encoding
Expires Wed, 17 Aug 2005 00:00:00 GMT
Cache-control no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma no-cache
Set-cookie 39dc92ffc6a490c2caad098a5e144d5d=526f4b2ad67e127632c6299abdb337ec; path=/; secure; HttpOnly
X-content-type-options nosniff
Last-modified Wed, 29 Jul 2026 01:05:16 GMT
Content-type text/html; charset=utf-8
Date Wed, 29 Jul 2026 01:05:16 GMT
Server Apache