hdrinc.com | Analytics by SecurityHeaders

HTTP Headers report for hdrinc.com

Header Name Header Data
HTTP status code 200
Expires Sun, 19 Nov 1978 05:00:00 GMT
X-Drupal-Cache MISS
X-Frame-Options SAMEORIGIN
Date Tue, 08 Apr 2025 02:00:41 GMT
Via 1.1 varnish, 1.1 varnish, 1.1 varnish, 1.1 varnish
Content-Language en
Content-Type text/html; charset=UTF-8
Server nginx
X-Drupal-Dynamic-Cache MISS
Cache-Control max-age=3600, public
Permissions-Policy accelerometer=(), ambient-light-sensor=(), autoplay=*, battery=(), bluetooth=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), screen-wake-lock=(), usb=()
Age 2712
X-Content-Type-Options nosniff
X-Served-By cache-chi-klot8100148-CHI, cache-ams2100122-AMS, cache-ams21048-AMS, cache-ams21048-AMS
X-Cache HIT, HIT, MISS, MISS
Connection keep-alive
Cross-Origin-Opener-Policy same-origin
Last-Modified Mon, 07 Apr 2025 18:58:50 GMT
Vary Accept-Encoding, Cookie, Cookie, Cookie
Cross-Origin-Resource-Policy cross-origin
Referrer-Policy strict-origin-when-cross-origin
Strict-Transport-Security max-age=31622400; includeSubDomains; preload
X-Timer S1744077642.920176,VS0,VE5
X-Pantheon-Styx-Hostname styx-fe2-a-65b77f78df-gvbbw
Accept-Ranges bytes
Content-Security-Policy-Report-Only default-src 'self' www.google-analytics.com www.youtube.com cdn.cookielaw.org *.onetrust.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.googletagmanager.com cdn.jsdelivr.net cdn.cookielaw.org img03.en25.com *.youtube.com *.google.com *.gstatic.com *.google-analytics.com embed.vev.page *.vev.design *.googleapis.com discover.hdrinc.com; style-src 'self' 'unsafe-inline' cloud.typography.com cdn.jsdelivr.net *.googleapis.com www.hdrinc.com; img-src 'self' data: *; media-src film.vev.design cdn.vev.design; frame-src 'self' *.google.com *.youtube.com *.vimeo.com discover.hdrinc.com *.doubleclick.net player.blubrry.com e.issuu.com caupneif01 *.youtube-nocookie.com; child-src 'self' *.google.com *.youtube.com; font-src 'self' data: cloud.typography.com cdn.vev.design *.gstatic.com www.hdrinc.com cdn.scite.ai use.typekit.net fonts.vev.design; connect-src 'self' *.googleapis.com *.google-analytics.com *.cookielaw.org *.onetrust.com analytics.google.com *.doubleclick.net region1.analytics.google.com; report-uri /report-csp-violation; upgrade-insecure-requests
X-Generator Drupal 10 (https://www.drupal.org)
Etag W/"1744052330"
X-Styx-Req-Id 57ad8d9a-13e2-11f0-8b7d-8615562eaf09
X-Cache-Hits 6, 50, 0, 0

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar