coc.ca | Analytics by SecurityHeaders

HTTP Headers report for coc.ca

Header Name Header Data
HTTP status code 200
X-Amz-Cf-Pop AMS1-P2
Age 51161
Date Sat, 19 Apr 2025 04:52:25 GMT
Content-Type text/html; charset=utf-8
Connection keep-alive
X-Frame-Options SAMEORIGIN
Vary accept-encoding
Cache-Control public, no-transform, max-age=600, stale-while-revalidate=86400, stale-if-error=86400
Content-Security-Policy default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' 'nonce-mxfqR+D9Xr/+g1GfrR+kQE2HDZkAguSQpvzYqecosnE=' d1ndd0kfyiplr2.cloudfront.net www.youtube.com cdn.plyr.io player.vimeo.com cdn.weglot.com www.google.com bat.bing.com script.hotjar.com edge.marker.io form.jotform.com; style-src 'self' 'unsafe-inline' d1ndd0kfyiplr2.cloudfront.net *.typekit.net cdn.plyr.io cdn.weglot.com; img-src 'self' d1ndd0kfyiplr2.cloudfront.net data: res.cloudinary.com i.vimeocdn.com i.ytimg.com googleads.g.doubleclick.net bat.bing.com www.google.com www.google.ie www.google-analytics.com www.google.co.uk www.facebook.com; frame-src 'self' open.spotify.com player.vimeo.com www.youtube.com www.youtube-nocookie.com www.google.com td.doubleclick.net app.marker.io form.jotform.com submit.jotform.com; frame-ancestors 'self'; font-src 'self' d1ndd0kfyiplr2.cloudfront.net; report-uri https://coccontentsecuritypolicy.report-uri.com/r/d/csp/enforce; report-to https://coccontentsecuritypolicy.report-uri.com/r/d/csp/enforce; connect-src 'self' d1ndd0kfyiplr2.cloudfront.net my.coc.ca vimeo.com cdn.plyr.io noembed.com cdn.weglot.com cdn-api-weglot.com api.swiftype.com www.google-analytics.com stats.g.doubleclick.net region1.analytics.google.com region1.google-analytics.com api.marker.io ssr.marker.io;
X-Xss-Protection 1; mode=block
Cf-Cache-Status DYNAMIC
Cf-Ray 9329cadcb9a35ec9-AMS
Strict-Transport-Security max-age=2592000; includeSubDomains
X-Content-Type-Options nosniff
X-Cache Hit from cloudfront
Via 1.1 bf1322673c76eb0dbc1cb8544c47f1e2.cloudfront.net (CloudFront)
X-Amz-Cf-Id xamzZwtjt8qSHob_Ep9Xvi_I5enUpVEZP47HBBApQ0AyNOe0UOTuFg==
Server cloudflare

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar