guardian.com.sg | Analytics by SecurityHeaders

HTTP Headers report for guardian.com.sg

Header Name Header Data
HTTP status code 200
Connection keep-alive
Vary Accept-Encoding,Cookie
Access-Control-Allow-Methods GET, POST, OPTIONS
X-Platform-Server i-006fb9bdefce4ccd0
Fastly-Page-Cacheable YES
X-Xss-Protection 1; mode=block
X-Robots-Tag INDEX,FOLLOW
X-Timer S1744844708.584264,VS0,VE174
Traceresponse 00-1836ef04578c4ecda736db3457777155-9308ab4f82e376fc-01
Cache-Control no-store, no-cache, must-revalidate, max-age=0
Strict-Transport-Security max-age=31557600
X-Debug-Info eyJyZXRyaWVzIjowfQ==
Date Wed, 16 Apr 2025 23:06:19 GMT
Age 72
X-Served-By cache-qpg1248-QPG, cache-qpg120092-QPG, cache-ams21026-AMS
Pragma cache
X-Frame-Options SAMEORIGIN
Access-Control-Allow-Headers Content-Type, Authorization
Access-Control-Allow-Credentials true
X-Magento-Tags store
Accept-Ranges bytes
X-Cache MISS, HIT, MISS
Access-Control-Allow-Origin https://snack-web-player.s3.us-west-1.amazonaws.com
Expires Thu, 19 Nov 1981 08:52:00 GMT
Content-Type text/html;charset=UTF-8
X-Content-Type-Options nosniff
X-Cache-Hits 0, 4, 0
Content-Security-Policy https: https://mcprod.guardian.com.sg/ https://guardian.com.sg/ 'unsafe-eval' 'unsafe-inline' https://connect.facebook.net https://static.zdassets.com https://ekr.zdassets.com https://ekr.zendesk.com https://123456.zendesk.com https://*.zopim.com https://zendesk-eu.my.sentry.io https://v2assets.zopim.io https://jsd-widget.atlassian.com wss://123456.zendesk.com wss://*.zopim.com *.emarsys.net *.scarabresearch.com https://www.instagram.com https://www.tiktok.com; style-src 'self' blob: https: 'unsafe-inline' https://mcprod.guardian.com.sg/; img-src data: http: https:; object-src 'none'; base-uri 'self' jsd-widget.atlassian.com; child-src 'self'; font-src data: 'self' fonts.gstatic.com dsf-cdn.loreal.io; frame-src *.atlassian.com *.emarsys.net *.scarabresearch.com *.facebook.com *.google.com assets.braintreegateway.com *.youtube.com *.youtu.be *.vimeo.com *.guardianmy.me play.guardian.com.my dsf-cdn-staging.loreal.io *.doubleclick.net *.gphb01pdazurefileshare.blob.core.windows.net *.mcprod.guardian.com.sg https://guardian.com.sg https://gphb01pdazurefileshare.blob.core.windows.net *.guardian.com.sg *.googletagmanager.com

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar