Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 70.165.59.20 |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 70.165.59.20
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
| DNS Lookup | 17.8 ms |
| TCP Connect | 173.5 ms |
| TLS Handshake | 321.1 ms |
| Time To First Byte (TTFB) | 650.4 ms |
| Content Download | 0 ms |
| Total Response Time | 650.4 ms |
DNS Lookup 17.8 ms
TCP Connect 173.5 ms
TLS Handshake 321.1 ms
Time To First Byte (TTFB) 650.4 ms
Content Download 0 ms
Total Response Time 650.4 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000 |
| CSP | ✔ Configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000
CSP ✔ Configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
| Title | Connection denied by Geolocation |
Title Connection denied by Geolocation
Detected Technologies
| Technology | Google Analytics |
Technology Google Analytics
HTTP Headers
| Date
| Fri, 24 Jul 2026 17:05:17 GMT |
| Content-Type
| text/html |
| Transfer-Encoding
| chunked |
| Connection
| keep-alive |
| X-Content-Type-Options
| nosniff |
| Strict-Transport-Security
| max-age=31536000 |
| Content-Security-Policy
| default-src 'self'; base-uri 'self'; frame-ancestors 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; connect-src 'self'; font-src 'self'; object-src 'self'; media-src 'self'; frame-src 'self'; form-action 'self' |
| Referrer-Policy
| strict-origin-when-cross-origin |
| X-Permitted-Cross-Domain-Policies
| none |
| Access-Control-Allow-Origin
| same-origin |
Date Fri, 24 Jul 2026 17:05:17 GMT
Content-Type text/html
Transfer-Encoding chunked
Connection keep-alive
X-Content-Type-Options nosniff
Strict-Transport-Security max-age=31536000
Content-Security-Policy default-src 'self'; base-uri 'self'; frame-ancestors 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; connect-src 'self'; font-src 'self'; object-src 'self'; media-src 'self'; frame-src 'self'; form-action 'self'
Referrer-Policy strict-origin-when-cross-origin
X-Permitted-Cross-Domain-Policies none
Access-Control-Allow-Origin same-origin