Header Name | Header Data |
---|---|
HTTP status code | 200 |
Cross-Origin-Opener-Policy | same-origin-allow-popups |
X-Backend-Server | sfx-www |
Date | Sun, 06 Apr 2025 13:31:01 GMT |
Vary | Accept-Encoding |
Strict-Transport-Security | max-age=31536000; includeSubDomains |
Server | nginx |
Referrer-Policy | same-origin |
Content-Language | en |
X-Xss-Protection | 1; mode=block |
Connection | keep-alive |
Content-Security-Policy-Report-Only | media-src cdn.sidefx.com static.sidefx.com media.sidefx.com d2wvmrjymyrujw.cloudfront.net; style-src 'self' 'unsafe-inline' cdn.sidefx.com static.sidefx.com d2wvmrjymyrujw.cloudfront.net media.sidefx.com fonts.googleapis.com www.google.com tagmanager.google.com *.vimeocdn.com www.gstatic.com; frame-src 'self' data: static.sidefx.com media.sidefx.com www.google.com connect.facebook.net www.facebook.net www.facebook.com docs.google.com maps.google.com www.youtube.com lists.sidefx.com *.vimeo.com *.vimeocdn.com www.sandbox.paypal.com www.paypal.com; img-src 'self' data: cdn.sidefx.com static.sidefx.com media.sidefx.com d2wvmrjymyrujw.cloudfront.net *.cdninstagram.com *.gravatar.com www.facebook.com static.lulu.com www.gstatic.com ssl.gstatic.com www.googleapis.com i.ytimg.com *.vimeocdn.com www.paypal.com t.paypal.com www.paypalobjects.com placekitten.com http://dummyimage.com resources.bamboohr.com *.google.com www.googletagmanager.com www.google-analytics.com stats.g.doubleclick.net; font-src 'self' data: cdn.sidefx.com static.sidefx.com media.sidefx.com fonts.gstatic.com; default-src 'self'; script-src 'self' 'unsafe-eval' cdn.sidefx.com static.sidefx.com media.sidefx.com d2wvmrjymyrujw.cloudfront.net *.googleapis.com www.gstatic.com www.google.com cse.google.com *.facebook.net api.instagram.com cdnjs.cloudflare.com unpkg.com cdn.jsdelivr.net *.googletagmanager.com tagmanager.google.com www.google-analytics.com stats.g.doubleclick.net analytics.google.com vimeo.com *.vimeo.com *.vimeocdn.com *.newrelic.com *.nr-data.net www.youtube.com www.paypal.com www.sandbox.paypal.com sidefx.bamboohr.com 'nonce-qgJ/ucJiHBVqc0BN9Rbk/w=='; connect-src 'self' www.google-analytics.com analytics.google.com stats.g.doubleclick.net www.facebook.com http://127.0.0.1:1714 ig.instant-tokens.com graph.instagram.com vimeo.com www.sandbox.paypal.com www.paypal.com sidefx.bamboohr.com; report-uri https://www.sidefx.com/csp_reports/ |
X-Content-Type-Options | nosniff |
X-Frame-Options | SAMEORIGIN |
Set-Cookie | csrftoken=spRB0ImWXuZMUsFrqjn9mEPpJy8iXlWByb2xD3knMi3OaY5yrIoT3RhVlSGTtaEm; expires=Sun, 05 Apr 2026 13:31:01 GMT; HttpOnly; Max-Age=31449600; Path=/; SameSite=Lax; Secure |
Content-Type | text/html; charset=utf-8 |
By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.
This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.
We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.
Watch it now at TrustRadar