appian.com | Analytics by SecurityHeaders

HTTP Headers report for appian.com

Header Name Header Data
HTTP status code 200
Connection keep-alive
Age 0
Date Sun, 06 Apr 2025 13:33:21 GMT
X-Served-By cache-ams21074-AMS
Content-Type text/html;charset=utf-8
X-Timer S1743946401.021915,VS0,VS0,VE459
X-Vhost appian.com-cloud
Strict-Transport-Security max-age=31536000; includeSubdomains;
Etag "8d114-63216a6067dd4-gzip"
X-Frame-Options SAMEORIGIN
Content-Security-Policy default-src 'self' blob: ;script-src 'unsafe-inline' 'unsafe-eval' 'report-sample' blob: 'self' *.google-analytics.com *.googletagmanager.com *.googleadservices.com *.google.com googleads.g.doubleclick.net j.6sc.co px.airpr.com bat.bing.com api8436.d41.co cdn-0.d41.co js.driftt.com app.enzuzo.com connect.facebook.net tracking.g2crowd.com *.hotjar.com metadata-static-files.sfo2.cdn.digitaloceanspaces.com *.pardot.com cdn.pdst.fm siteimproveanalytics.com static.ads-twitter.com js.adsrvr.org insight.adsrvr.org ws.zoominfo.com *.clearbitjs.com *.clearbit.com *.clearbitscripts.com assets.adobedtm.com www.cookieconsent.com www.termsfeed.com *.youtube-nocookie.com *.youtube.com *.ytimg.com *.appian.com id.rlcdn.com ecf.d41.co snap.licdn.com *.metadata.io cdn.jsdelivr.net cdn.vidstack.io *.bigmarker.com ; style-src 'unsafe-inline' 'report-sample' 'self' cdn.jsdelivr.net fonts.googleapis.com *.googletagmanager.com tagmanager.google.com *.hotjar.com cdn.vidstack.io *.bigmarker.com ;object-src 'none'; base-uri 'self';connect-src 'self' *.googleadservices.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com *.google.com *.doubleclick.net bat.bing.com api8436.d41.co app.enzuzo.com tracking.g2crowd.com *.hotjar.com *.hotjar.io wss://*.hotjar.com ws.zoominfo.com *.omtrdc.net us-central1-adaptive-growth.cloudfunctions.net *.googlesyndication.com *.6sc.co epsilon.6sense.com *.linkedin.com pixels.spotify.com *.metadata.io api.ipify.org *.bigmarker.com *.ytimg.com; font-src 'self' data: cdn.jsdelivr.net fonts.gstatic.com *.hotjar.com *.bigmarker.com;frame-src 'self' *.googletagmanager.com *.doubleclick.net js.driftt.com *.youtube.com *.youtube-nocookie.com *.appian.com *.pardot.com *.amazonaws.com *.bigmarker.com;img-src 'self' blob: data: *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.gstatic.com *.google.com *.googlesyndication.com www.facebook.com *.linkedin.com segment.prod.bidr.io ws.zoominfo.com *.ytimg.com b.6sc.co bat.bing.com *.siteimproveanalytics.io analytics.twitter.com t.co *.omtrdc.net dpx.airpr.com *.hotjar.com *.adnxs.com *.vidstack.io *.bigmarker.com
X-Cache MISS
Vary Accept-Encoding,User-Agent
Cache-Control max-age=300,stale-while-revalidate=3600
Last-Modified Sun, 06 Apr 2025 06:58:36 GMT
X-Content-Type-Options nosniff
Accept-Ranges bytes
Set-Cookie affinity="ac76fff9a0bd5fee"; Path=/; HttpOnly; secure

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar