smirnoff.com | Analytics by SecurityHeaders

HTTP Headers report for smirnoff.com

Header Name Header Data
HTTP status code 200
Content-Security-Policy default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' *.mikmak.ai *.swaven.com https://*.googleapis.com cdn-ukwest.onetrust.com footer.diageohorizon.com va.vercel-scripts.com vercel.live https://*.googletagmanager.com https://*.google-analytics.com static.ads-twitter.com rules.quantcount.com pixel.quantcount.com insight.adsrvr.org/ *.facebook.com https://connect.facebook.net https://secure.quantserve.com https://d.turn.com https://js.adsrvr.org js.monitor.azure.com api.mapbox.com www.google.com www.gstatic.com diageoagegate.diageoplatform.com www.googletagmanager.com cdnjs.cloudflare.com cdn.treasuredata.com web.diageoagegate.com www.youtube.com cdn.evgnet.com *.in.treasuredata.com *.smirnoff.com www.diageoagegate.com code.jquery.com cdn.debugbear.com; style-src 'self' 'unsafe-inline' https://*.googleapis.com cdn.fonts.net cdn.channelsight.com api.mapbox.com vercel.live footer.diageohorizon.com; img-src 'self' *.mikmak.ai *.swaven.com *.static-swaven.com blob: data: https://*.googleapis.com maps.gstatic.com https://cscoreproweustor.blob.core.windows.net images.ctfassets.net t.co analytics.twitter.com www.google.co.uk https://*.google.com *.google.de *.google.ie https://*.g.doubleclick.net https://*.googletagmanager.com https://*.google-analytics.com *.analytics.google.com i.vimeocdn.com cdn.channelsight.com cdn-ukwest.onetrust.com vercel.com *.facebook.com pixel.quantserve.com insight.adsrvr.org/ *.cloudfunctions.net www.google-analytics.com ad.doubleclick.net www.drinkiq.com www.diageoagegate.com media.diageocms.com media.diageodam.com media-diageocms.diageoplatform.com; media-src 'self' *.vimeocdn.com assets.ctfassets.net videos.ctfassets.net player.vimeo.com vod-progressive.akamaized.net download-video.akamaized.net; connect-src 'self' *.mikmak.ai *.swaven.com s3.eu-west-1.amazonaws.com https://*.googleapis.com https://*.googletagmanager.com https://*.g.doubleclick.net https://*.google.com https://*.google-analytics.com *.analytics.google.com *.facebook.com images.ctfassets.net api.channelsight.com *.algolianet.com *.algolia.net api.mapbox.com cdn-ukwest.onetrust.com geolocation.onetrust.com privacyportal-uk.onet vercel.live dc.services.visualstudio.com *.google-analytics.com privacyportal-uk.onetrust.com events.mapbox.com *.evergage.com www.google.com *.doubleclick.net footer.diageohorizon.com *.debugbear.com; font-src 'self' *.mikmak.ai *.swaven.com *.static-swaven.com data: cdn.channelsight.com fonts.gstatic.com; worker-src blob:; object-src 'self' blob: cdn.channelsight.com api.mapbox.com; base-uri 'self'; form-action 'self' *.r2sndr.com; frame-src *.mikmak.ai *.swaven.com vercel.live match.adsrvr.org insight.adsrvr.org where-to-buy.co google.com *.google.com *.doubleclick.net www.googletagmanager.com; frame-ancestors 'none'; block-all-mixed-content; upgrade-insecure-requests;
Etag W/"18at0b38fx5hud"
Server Vercel
X-Powered-By Next.js
Date Mon, 21 Apr 2025 12:56:54 GMT
Referrer-Policy origin-when-cross-origin
Vary RSC, Next-Router-State-Tree, Next-Router-Prefetch
X-Vercel-Id fra1::iad1::klm8h-1745241374538-41d5f99789d4
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Robots-Tag all
X-Vercel-Cache HIT
X-Xss-Protection 1; mode=block
Access-Control-Allow-Origin ddp-smirnoff-97njb5ijo-diageo.vercel.app
Age 1159
Cache-Control public, max-age=0, must-revalidate
Content-Type text/html; charset=utf-8
Permissions-Policy interest-cohort=()
Strict-Transport-Security max-age=63072000
X-Matched-Path /[locale]/[[...slug]]

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar