Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 2.16.11.57 |
| Compression | gzip |
|
🔒 🟡 Mixed Content (1 HTTP resources) | The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers. |
|
ℹ 🔵 Missing HSTS | HTTP Strict Transport Security is not configured. Recommended for HTTPS sites. |
|
ℹ 🔵 Missing X-Frame-Options | The site can be embedded in iframes by third parties (clickjacking risk). |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 2.16.11.57
Compression gzip
🔒 🟡 Mixed Content (1 HTTP resources) The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers.
ℹ 🔵 Missing HSTS HTTP Strict Transport Security is not configured. Recommended for HTTPS sites.
ℹ 🔵 Missing X-Frame-Options The site can be embedded in iframes by third parties (clickjacking risk).
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://www.do.avon.com:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.do.avon.com/PRSuite/home_page.page | 200 | HTTP/1.1 200 OK |
#1 URL https://www.do.avon.com:443
HTTP Status Code 301
Status HTTP/1.1 301 Moved Permanently
#2 URL https://www.do.avon.com/PRSuite/home_page.page
HTTP Status Code 200
Status HTTP/1.1 200 OK
Performance
| DNS Lookup | 2.4 ms |
| TCP Connect | 3.8 ms |
| TLS Handshake | 7 ms |
| Time To First Byte (TTFB) | 247.1 ms |
| Content Download | 0.2 ms |
| Total Response Time | 247.3 ms |
DNS Lookup 2.4 ms
TCP Connect 3.8 ms
TLS Handshake 7 ms
Time To First Byte (TTFB) 247.1 ms
Content Download 0.2 ms
Total Response Time 247.3 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✘ Not configured |
| CSP | ✔ Configured |
| X-Frame-Options | ⚠ Not configured |
| X-Content-Type-Options | ⚠ Not configured |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✘ Not configured
CSP ✔ Configured
X-Frame-Options ⚠ Not configured
X-Content-Type-Options ⚠ Not configured
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
| Technology | Bootstrap jQuery Google Analytics Cloudflare |
Technology Bootstrap jQuery Google Analytics Cloudflare
HTTP Headers
| Expires
| Thu, 01 Dec 1994 16:00:00 GMT |
| Cache-Control
| no-cache="set-cookie, set-cookie2" |
| Access-Control-Allow-Origin
| * |
| Access-Control-Allow-Headers
| Origin, X-Requested-With, Content-Type, Accept |
| Access-Control-Allow-Methods
| GET,HEAD,POST,OPTIONS,PUT,DELETE |
| Content-Security-Policy
| default-src * self blob: data: gap:; style-src * self 'unsafe-inline' blob: data: gap:; worker-src * 'self' 'unsafe-eval' 'unsafe-inline' blob: data: gap:; script-src * 'self' 'unsafe-eval' 'unsafe-inline' blob: data: gap:; object-src * 'self' blob: data: gap:; img-src * self 'unsafe-inline' blob: data: gap:; connect-src self * 'unsafe-inline' blob: data: gap:; frame-src * self blob: data: gap:; |
| Content-Type
| text/html; charset=UTF-8 |
| Content-Language
| es-do |
| Content-Encoding
| gzip |
| Content-Length
| 9137 |
| Vary
| Accept-Encoding |
| Date
| Wed, 22 Jul 2026 16:11:09 GMT |
| Connection
| keep-alive |
Meta Tags
| Content-Type | text/html; charset=UTF-8 |
| Viewport | width=device-width, initial-scale=1 |
Expires Thu, 01 Dec 1994 16:00:00 GMT
Cache-Control no-cache="set-cookie, set-cookie2"
Access-Control-Allow-Origin *
Access-Control-Allow-Headers Origin, X-Requested-With, Content-Type, Accept
Access-Control-Allow-Methods GET,HEAD,POST,OPTIONS,PUT,DELETE
Content-Security-Policy default-src * self blob: data: gap:; style-src * self 'unsafe-inline' blob: data: gap:; worker-src * 'self' 'unsafe-eval' 'unsafe-inline' blob: data: gap:; script-src * 'self' 'unsafe-eval' 'unsafe-inline' blob: data: gap:; object-src * 'self' blob: data: gap:; img-src * self 'unsafe-inline' blob: data: gap:; connect-src self * 'unsafe-inline' blob: data: gap:; frame-src * self blob: data: gap:;
Content-Type text/html; charset=UTF-8
Content-Language es-do
Content-Encoding gzip
Content-Length 9137
Vary Accept-Encoding
Date Wed, 22 Jul 2026 16:11:09 GMT
Connection keep-alive