SECURITYHEADERS.IO Website Review
An error occurred while visiting the website securityheaders.io
We encountered errors when trying to access the following URL addresses of the website securityheaders.io:
- HTTP 403 http://securityheaders.io/
- HTTP 403 https://securityheaders.io/
HTTP 403 is an HTTP status code indicating that access to the requested resource is forbidden. It occurs when the server restricts access from our bot to the page, often due to the presence of a firewall.
The content below showcases a portion of the historical analysis data cached by our server on Sep 30, 2024. Due to our bot's inability to access this website, the data may be incomplete or outdated, and is provided for your reference only.
Basic Information
Site Title:
Server:
cloudflare
IP:
City:
Page Information
Title:
Analyse your HTTP response headers
Length: 34 character(s); Best length: 10 ~ 60 character(s)
Meta description:
Quickly and easily assess the security of your HTTP response headers
Length: 68 character(s); Best length: 50 ~ 160 character(s)
Meta keywords:
security headers, http response headers, check headers, scan headers
Length: 68 character(s); Best length: 10 ~ 255 character(s)
H1 Tag:
Security Headers
Length: 16 character(s); Best length: 10 ~ 255 character(s)
External links:
6 (0 nofollow)
Internal links:
26 (0 nofollow)
Site Technology
Server:
cloudflare
SSL Secure:
Available
robots.txt:
Unavailable
XML Sitemap:
Unavailable
Gzip Compress:
Available
favicon.ico:
Unavailable
HTTP Header Analysis
HTTP header fields are components of the message header of requests and responses in the Hypertext Transfer Protocol (HTTP). They define the operating parameters of an HTTP transaction. The header fields are not directly displayed by normal web browsers like Internet Explorer, Google Chrome, Firefox etc. Below is the HTTP Header information of securityheaders.io:
HTTP/1.1 200 OK
Date: Tue, 01 Oct 2024 01:29:36 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
vary: Accept-Encoding
set-cookie: anti_forgery_cookie=2889fd2f13a4369b2005fb74a1087030; expires=Tue, 01-Oct-2024 03:29:36 GMT; Max-Age=7200; path=/
access-control-allow-origin: *
content-security-policy: default-src 'self'; script-src 'self' js.stripe.com static.cloudflareinsights.com www.google.com/recaptcha/api.js www.gstatic.com/recaptcha/releases/; img-src 'self'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com; font-src 'self' fonts.gstatic.com cdnjs.cloudflare.com; form-action 'self'; frame-src js.stripe.com www.google.com; report-uri https://scotthelme.report-uri.com/r/d/csp/enforce; report-to default
strict-transport-security: max-age=31536000; includeSubDomains; preload
referrer-policy: strict-origin-when-cross-origin
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block; report=https://scotthelme.report-uri.com/r/d/xss/enforce
x-content-type-options: nosniff
expect-ct: max-age=0, report-uri="https://scotthelme.report-uri.com/r/d/ct/reportOnly"
permissions-policy: accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
report-to: {"group":"default","max_age":31536000,"endpoints":[{"url":"https://scotthelme.report-uri.com/a/d/g"}],"include_subdomains":true}
nel: {"report_to":"default","max_age":31536000,"include_subdomains":true}
Cache-Control: public, max-age=60
cross-origin-embedder-policy-report-only: require-corp; report-to="default"
cross-origin-opener-policy-report-only: same-origin; report-to="default"
CF-Cache-Status: DYNAMIC
Server: cloudflare
CF-RAY: 8cb8aec37c99429e-EWR
Content-Encoding: gzip
Date: Tue, 01 Oct 2024 01:29:36 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
vary: Accept-Encoding
set-cookie: anti_forgery_cookie=2889fd2f13a4369b2005fb74a1087030; expires=Tue, 01-Oct-2024 03:29:36 GMT; Max-Age=7200; path=/
access-control-allow-origin: *
content-security-policy: default-src 'self'; script-src 'self' js.stripe.com static.cloudflareinsights.com www.google.com/recaptcha/api.js www.gstatic.com/recaptcha/releases/; img-src 'self'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com; font-src 'self' fonts.gstatic.com cdnjs.cloudflare.com; form-action 'self'; frame-src js.stripe.com www.google.com; report-uri https://scotthelme.report-uri.com/r/d/csp/enforce; report-to default
strict-transport-security: max-age=31536000; includeSubDomains; preload
referrer-policy: strict-origin-when-cross-origin
x-frame-options: SAMEORIGIN
x-xss-protection: 1; mode=block; report=https://scotthelme.report-uri.com/r/d/xss/enforce
x-content-type-options: nosniff
expect-ct: max-age=0, report-uri="https://scotthelme.report-uri.com/r/d/ct/reportOnly"
permissions-policy: accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()
report-to: {"group":"default","max_age":31536000,"endpoints":[{"url":"https://scotthelme.report-uri.com/a/d/g"}],"include_subdomains":true}
nel: {"report_to":"default","max_age":31536000,"include_subdomains":true}
Cache-Control: public, max-age=60
cross-origin-embedder-policy-report-only: require-corp; report-to="default"
cross-origin-opener-policy-report-only: same-origin; report-to="default"
CF-Cache-Status: DYNAMIC
Server: cloudflare
CF-RAY: 8cb8aec37c99429e-EWR
Content-Encoding: gzip
DNS Record Analysis
Domain Name Systes (DNS) translates easily memorized domain names to the numerical IP addresses needed for the purpose of locating computer services and devices worldwide. There are total 13 DNS record(s) of securityheaders.io.
| Host | Type | IP/Target | TTL | Extra Infomation |
|---|---|---|---|---|
| securityheaders.io | A | 296 | ||
| securityheaders.io | A | 296 | ||
| securityheaders.io | NS | 21600 | ||
| securityheaders.io | NS | 21600 | ||
| securityheaders.io | SOA | 1800 | expire: 604800 serial: 2351537871 | |
| securityheaders.io | MX | 300 | pri: 10 | |
| securityheaders.io | MX | 300 | pri: 20 | |
| securityheaders.io | TXT | v=spf1 include:spf.messagingengine.com -all | 300 | |
| securityheaders.io | TXT | google-site-verification=Ope15tGgC-fqidRzJOi3pJfLYAUjg-fC1BzWgKHciJY | 300 | |
| securityheaders.io | TXT | keybase-site-verification=36kRxygqDNby_83957VhO1OKAkrU-JQeY1apzZL3HTE | 300 | |
| securityheaders.io | TXT | blitz=mu-d15e2e49-bd72d4fd-b5efada7-c5904cb1 | 300 | |
| securityheaders.io | AAAA | 2606:4700:3031::ac43:c46b | 300 | |
| securityheaders.io | AAAA | 2606:4700:3033::6815:1532 | 300 |