ema.europa.eu | Analytics by SecurityHeaders

HTTP Headers report for ema.europa.eu

Header Name Header Data
HTTP status code 200
X-Xss-Protection 1; mode=block
Cache-Control public, max-age=300, s-maxage=300
Content-Type text/html; charset=UTF-8
Expires Sun, 19 Nov 1978 05:00:00 GMT
X-Consumer-Id OsX6PrBRpaABb6vTSr8Hl6fvAxrgxk76WWZVTqCjBXA
Content-Security-Policy default-src 'self' *.europa.eu europa.eu *.s3.amazonaws.com; script-src 'self' *.europa.eu europa.eu 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com *.siteimprove.net *.siteimprove.com *.jsdelivr.net; style-src 'self' *.europa.eu europa.eu 'unsafe-inline' cdnjs.cloudflare.com *.jsdelivr.net; img-src 'self' *.europa.eu europa.eu loremflickr.com placeimg.com *.picsum.photos picsum.photos *.s3.amazonaws.com data: blob: *.jsdelivr.net; frame-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com *.google.com google.com; child-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; connect-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; report-uri /report-csp-violation
X-Age 7684
Strict-Transport-Security max-age=31536000; includeSubDomains; preload;
Date Thu, 17 Apr 2025 22:08:48 GMT
Last-Modified Thu, 17 Apr 2025 20:00:30 GMT
X-Fpfis 3725332890 3712828125
Via 1.1 241b025da3883bdb653910a6da97c0a8.cloudfront.net (CloudFront)
Connection keep-alive
Etag "1744920030-gzip"
X-Cache Miss from cloudfront
X-Webkit-Csp default-src 'self' *.europa.eu europa.eu *.s3.amazonaws.com; script-src 'self' *.europa.eu europa.eu 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com *.siteimprove.net *.siteimprove.com *.jsdelivr.net; style-src 'self' *.europa.eu europa.eu 'unsafe-inline' cdnjs.cloudflare.com *.jsdelivr.net; img-src 'self' *.europa.eu europa.eu loremflickr.com placeimg.com *.picsum.photos picsum.photos *.s3.amazonaws.com data: blob: *.jsdelivr.net; frame-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com *.google.com google.com; child-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; connect-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; report-uri /report-csp-violation
X-Amz-Cf-Pop AMS1-C1
Content-Language en
X-Content-Security-Policy default-src 'self' *.europa.eu europa.eu *.s3.amazonaws.com; script-src 'self' *.europa.eu europa.eu 'unsafe-inline' 'unsafe-eval' cdnjs.cloudflare.com *.siteimprove.net *.siteimprove.com *.jsdelivr.net; style-src 'self' *.europa.eu europa.eu 'unsafe-inline' cdnjs.cloudflare.com *.jsdelivr.net; img-src 'self' *.europa.eu europa.eu loremflickr.com placeimg.com *.picsum.photos picsum.photos *.s3.amazonaws.com data: blob: *.jsdelivr.net; frame-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com *.google.com google.com; child-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; connect-src 'self' publications.europa.eu op.europa.eu *.europa.eu europa.eu *.siteimprove.com siteimprove.com *.ustream.tv ustream.tv *.video.ibm.com video.ibm.com *.youtube.com youtube.com *.youtu.be youtu.be *.youtube-nocookie.com youtube-nocookie.com *.dailymotion.com dailymotion.com *.vimeo.com vimeo.com; report-uri /report-csp-violation
Referrer-Policy strict-origin-when-cross-origin
Feature-Policy autoplay 'self'; camera 'self'; encrypted-media 'self'; fullscreen 'self'; geolocation 'self'; microphone 'self'; midi 'self'; payment 'self'; vr 'self';
Accept-Ranges bytes
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
Vary Cookie,Accept-Encoding
X-Amz-Cf-Id GzTfNRW30vfzYKUYJgSBKt7M3B9je-BfTr9psSJ8j4sDWzoelTqZwQ==

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar