sofi.com | Analytics by SecurityHeaders

HTTP Headers report for sofi.com

Header Name Header Data
HTTP status code 200
Date Sat, 05 Apr 2025 18:52:16 GMT
Critical-Ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
Cross-Origin-Embedder-Policy require-corp
Cross-Origin-Resource-Policy same-origin
Cf-Chl-Out 3bH0c03oeBKfRP3FZkqsshB7GZRsC15eluuSxCkQWIk5fA0+wiASON1pAQdJ2MZWf1GhGag9+cDmKpRzO3+yTyJuiLaumiIIkz/sRQz0ht7svL7h5eS5L8dNdHc8cL5Vqbnnkrf5zP16tiu7HiIgcA==$yoItCzOuO+/SnEvIyOhOGg==
Report-To {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=kfpyhczCCjTyq2wfquBef%2F0FDlO%2FAYADQsMJImOuC5YztnCJvFNA9uUMgXYlQ%2F7TKFM1%2FTr9zHjFLLPoXfQNTjXVUl03IMZGz96Fi%2BuPOCbgwrtMvXlH22%2FU"}],"group":"cf-nel","max_age":604800}
Referrer-Policy same-origin
X-Content-Options nosniff
Strict-Transport-Security max-age=31536000; includeSubDomains
Origin-Agent-Cluster ?1
Cache-Control private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
X-Content-Type-Options nosniff
Cf-Mitigated challenge
Content-Type text/html; charset=UTF-8
Cross-Origin-Opener-Policy same-origin
Vary Accept-Encoding
Cf-Ray 92bb3ddb2e8fb6a8-AMS
Permissions-Policy accelerometer=(),autoplay=(),browsing-topics=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),interest-cohort=(),magnetometer=(),microphone=(),payment=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),sync-xhr=(),usb=()
X-Frame-Options SAMEORIGIN
Expires Thu, 01 Jan 1970 00:00:01 GMT
Accept-Ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
Server-Timing chlray;desc="92bb3ddb2e8fb6a8"
Nel {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server cloudflare

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar