languageline.com | Analytics by SecurityHeaders

HTTP Headers report for languageline.com

Header Name Header Data
HTTP status code 200
X-Frame-Options sameorigin
X-Hs-Cache-Config BrowserCache-5s-EdgeCache-180s
Server cloudflare
Last-Modified Wed, 16 Apr 2025 06:44:49 GMT
Permissions-Policy camera=(), microphone=()
Strict-Transport-Security max-age=31536000
X-Hs-Cache-Control s-maxage=10800, max-age=0
X-Xss-Protection 1
Edge-Cache-Tag CT-123412929671,CT-22538902476,P-470255,CW-109310773913,CW-110810448252,CW-112722343692,CW-113916658004,CW-113943561583,CW-113943596170,CW-113965878802,CW-116047881778,CW-123387105189,CW-21523038504,CW-21685253285,E-107650195596,E-107650573089,E-107650941249,E-107652796758,E-107652833125,E-107652833623,E-107652833624,E-107652846176,E-107652846177,E-107652907866,E-109317496943,E-110992813235,E-110993479759,MENU-108663117636,MENU-108775609687,MENU-171490489407,PGS-ALL,SW-0,TS-107652197435
X-Hs-Hub-Id 470255
Set-Cookie __cf_bm=YVG4zz1PRIa54QyOFpR1dNIPaNTYQkw84ozdKhUH0b0-1745086921-1.0.1.1-yQrtuV.1cohKp137a0UJbGvd9H9gB1iBvTj2utE90UBEuLXxQ_vvTu6ih3TW5o8SREYKnluKrqo9E.vUb2rEmkP3TrZZ5rpY7IDhlJtYSGI; path=/; expires=Sat, 19-Apr-25 18:52:01 GMT; domain=.www.languageline.com; HttpOnly; Secure; SameSite=None
Report-To {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=ZebaYXm8fjr0TQTJPTi7VSOZJs4Nv8aX1hHXc1mHE0AuRB%2BEYDzKkmqY7jEN7ZAlrrXPK73b6nzXlQOvLETR%2FtaR9%2BRoIZxHcDtEbfHbLFdMwyfGPOwcwBPio4l%2BrxsMmVS8TVJX"}],"group":"cf-nel","max_age":604800}
Nel {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Vary Accept-Encoding
Date Sat, 19 Apr 2025 18:22:01 GMT
Cache-Control s-maxage=10800, max-age=0
X-Hs-Content-Id 22538902476
X-Hs-Prerendered Wed, 16 Apr 2025 06:44:49 GMT
Content-Type text/html; charset=UTF-8
Referrer-Policy strict-origin-when-cross-origin
X-Content-Type-Options nosniff
Connection keep-alive
Cf-Ray 932e6cc8ae426627-AMS
Content-Security-Policy default-src 'self' data: *.google-analytics.com *.ipify.org; script-src 'unsafe-eval' *.languageline.com *.ipify.org *.hsadspixel.net *.hs-analytics.net js.hscta.net *.hubspot.com static.hsappstatic.net *.usemessages.com *.hs-banner.com *.hubspotusercontent10.net *.hubspotusercontent-na1.net *.hubspot.net *.hscollectedforms.net *.hsleadflows.net *.hsforms.net *.hsforms.com *.hs-scripts.com *.hubspotfeedback.com feedback.hubapi.com cdn-cookieyes.com *.googleadservices.com *.facebook.net *.doubleclick.net *.licdn.com *.vimeo.com *.hotjar.com *.googletagmanager.com *.google-analytics.com *.bizible.com *.paytrace.com *.jquery.com *.salesforce-sites.com platform.twitter.com *.vimeocdn.com *.pardot.com js.zi-scripts.com ws.zoominfo.com tags.clickagy.com 'strict-dynamic' 'nonce-vwi8UwSqlJ1SwKIxNVyyjw=='; style-src 'unsafe-inline' *.languageline.com *.hubspotusercontent-na1.net *.hubspotusercontent10.net cdn2.hubspot.net *.googleapis.com *.google-analytics.com *.hsappstatic.net *.hotjar.com; img-src 'self' data: *.languageline.com js.hscta.net no-cache.hubspot.com *.hubspot.com *.hubspotusercontent10.net *.hubspotusercontent00.net *.hubspotusercontent-na1.net *.hubspot.net cdn2.hubspot.net *.hsforms.net *.hsforms.com *.hsappstatic.net *.google.com *.google.ca *.google-analytics.com ssl.gstatic.com *.linkedin.com cdn-cookieyes.com *.hs-embed-reporting.com *.hotjar.com *.googletagmanager.com *.facebook.com *.bizible.com *.bizibly.com *.vimeocdn.com *.ytimg.com marvel-b1-cdn.bc0a.com *.doubleclick.net syndication.twitter.com; font-src data: *.languageline.com *.hubspotusercontent10.net *.hubspotusercontent-na1.net *.hubspot.net cdn2.hubspot.net *.gstatic.com *.hotjar.com; connect-src *.languageline.com *.ipify.org *.hubapi.com js.hscta.net *.hubspot.com *.hs-banner.com *.hscollectedforms.net *.hsforms.com *.cookieyes.com *.linkedin.com cdn-cookieyes.com *.amazonaws.com *.llts.com *.hotjar.com *.hotjar.io https://ll-api-proxy.dev.brighthost.ca https://ll-api-proxy.staging.brighthost.ca *.google.com *.googleadservices.com *.google-analytics.com *.googlesyndication.com *.google.ca *.g.doubleclick.net wss://ws.hotjar.com aorta.clickagy.com hemsync.clickagy.com js.zi-scripts.com ws.zoominfo.com; media-src *.languageline.com js.hscta.net no-cache.hubspot.com *.hubspot.com *.hubspotusercontent10.net *.hubspotusercontent-na1.net *.hubspot.net cdn2.hubspot.net *.hsforms.net *.hsforms.com *.hsappstatic.net; object-src 'none'; child-src *.hsforms.com; frame-src *.languageline.com lls.my.salesforce-sites.com *.hubspot.com *.hs-sites.com *.hubspot.net play.hubspotvideo.com *.hsforms.net *.hsforms.com *.vimeo.com youtube.com www.youtube.com *.force.com *.doubleclick.net *.google.com *.pardot.com *.facebook.com *.incontact.com platform.twitter.com hemsync.clickagy.com www.googletagmanager.com; frame-ancestors 'self' *.hs-sites.com *.languageline.com; upgrade-insecure-requests
Alt-Svc h3=":443"; ma=86400
Etag W/"0e190f26e45c71a7568e02f7c53b3138"
X-Hs-Cf-Cache-Status HIT
X-Hs-Cfworker-Meta {"contentType":"SITE_PAGE"}

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar