stocksy.com | Analytics by SecurityHeaders

HTTP Headers report for stocksy.com

Header Name Header Data
HTTP status code 200
Cf-Cache-Status DYNAMIC
Vary Accept-Encoding
Sessid cb52754a468a0880caf61099bd8076eb
Server cloudflare
Connection keep-alive
Cache-Control no-store, no-cache, must-revalidate
Pragma no-cache
X-Frame-Options DENY
Nel {"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Content-Type text/html; charset=UTF-8
Cf-Ray 92b936d05d3d9085-AMS
Alt-Svc h3=":443"; ma=86400
Expires Thu, 19 Nov 1981 08:52:00 GMT
Userid null
Content-Security-Policy-Report-Only base-uri 'self'; upgrade-insecure-requests; default-src 'none'; manifest-src 'self'; script-src 'self' 'nonce-OTE1NTMwMzYyMTc0Mzg1Nzg3NjE1OTY1' 'strict-dynamic' wasm-eval static.ads-twitter.com bat.bing.com www.clarity.ms challenges.cloudflare.com static.cloudflareinsights.com connect.facebook.net googleads.g.doubleclick.net www.googleadservices.com ajax.googleapis.com js.hs-analytics.net js.hs-banner.com js.hs-scripts.com js.hsadspixel.net js.hscollectedforms.net cdn.jsdelivr.net snap.licdn.com cdn.linkedin.oribi.io www.paypal.com www.paypalobjects.com s.pinimg.com assets.pinterest.com ct.pinterest.com js.stripe.com widget.surveymonkey.com analytics.tiktok.com js.zi-scripts.com *.google-analytics.com *.google.com *.googletagmanager.com *.hotjar.com *.surveymonkey.com *.zdassets.com; style-src 'self' 'unsafe-inline' prd-stocksy-dist.s3.amazonaws.com *.googleapis.com www.gstatic.com cdn.honey.io; connect-src 'self' data properties *.execute-api.us-east-1.amazonaws.com *.s3.amazonaws.com s3.amazonaws.com bat.bing.com bat.bing.net *.clarity.ms *.logs.datadoghq.com browser-http-intake.logs.datadoghq.com browser-intake-datadoghq.com stats.g.doubleclick.net www.facebook.com *.google.ad *.google.ae *.google.al *.google.am *.google.as *.google.at *.google.az *.google.ba *.google.be *.google.bf *.google.bg *.google.bi *.google.bj *.google.bs *.google.bt *.google.by *.google.ca *.google.cat *.google.cd *.google.cf *.google.cg *.google.ch *.google.ci *.google.cl *.google.cm *.google.cn *.google.co.ao *.google.co.bw *.google.co.ck *.google.co.cr *.google.co.id *.google.co.il *.google.co.in *.google.co.jp *.google.co.ke *.google.co.kr *.google.co.ls *.google.co.ma *.google.co.mz *.google.co.nz *.google.co.th *.google.co.tz *.google.co.ug *.google.co.uk *.google.co.uz *.google.co.ve *.google.co.vi *.google.co.za *.google.co.zm *.google.co.zw google.com *.google.com *.google.com.af *.google.com.ag *.google.com.ai *.google.com.ar *.google.com.au *.google.com.bd *.google.com.bh *.google.com.bn *.google.com.bo *.google.com.br *.google.com.bz *.google.com.co *.google.com.cu *.google.com.cy *.google.com.do *.google.com.ec *.google.com.eg *.google.com.et *.google.com.fj *.google.com.gh *.google.com.gi *.google.com.gt *.google.com.hk *.google.com.jm *.google.com.kh *.google.com.kw *.google.com.lb *.google.com.ly *.google.com.mm *.google.com.mt *.google.com.mx *.google.com.my *.google.com.na *.google.com.ng *.google.com.ni *.google.com.np *.google.com.om *.google.com.pa *.google.com.pe *.google.com.pg *.google.com.ph *.google.com.pk *.google.com.pr *.google.com.py *.google.com.qa *.google.com.sa *.google.com.sb *.google.com.sg *.google.com.sl *.google.com.sv *.google.com.tj *.google.com.tr *.google.com.tw *.google.com.ua *.google.com.uy *.google.com.vc *.google.com.vn *.google.cv *.google.cz *.google.de *.google.dj *.google.dk *.google.dm *.google.dz *.google.ee *.google.es *.google.fi *.google.fm *.google.fr *.google.ga *.google.ge *.google.gg *.google.gl *.google.gm *.google.gr *.google.gy *.google.hn *.google.hr *.google.ht *.google.hu *.google.ie *.google.im *.google.iq *.google.is *.google.it *.google.je *.google.jo *.google.kg *.google.ki *.google.kz *.google.la *.google.li *.google.lk *.google.lt *.google.lu *.google.lv *.google.md *.google.me *.google.mg *.google.mk *.google.ml *.google.mn *.google.ms *.google.mu *.google.mv *.google.mw *.google.ne *.google.nl *.google.no *.google.nr *.google.nu *.google.pl *.google.pn *.google.ps *.google.pt *.google.ro *.google.rs *.google.ru *.google.rw *.google.sc *.google.se *.google.sh *.google.si *.google.sk *.google.sm *.google.sn *.google.so *.google.sr *.google.st *.google.td *.google.tg *.google.tl *.google.tm *.google.tn *.google.to *.google.tt *.google.vg *.google.vu *.google.ws *.google-analytics.com *.googleadservices.com *.googleapis.com pagead2.googlesyndication.com data.hockeystack.com *.hotjar.com wss://ws.hotjar.com *.hotjar.io surveystats.hotjar.io forms.hscollectedforms.net api.hubapi.com forms.hubspot.com px.ads.linkedin.com https://px.ads.linkedin.com/ws cdn.linkedin.oribi.io gw.dr1.linkedin.oribi.io gw.linkedin.oribi.io *.paypal.com *.paypalobjects.com *.pinterest.com *.stocksy.com wss://graphql-prd.stocksy.com local.stocksy.com local.stocksy.com:8081 graphql-stg.stocksy.com *.stripe.com *.stripe.network analytics.tiktok.com browser.translate.yandex.net *.zdassets.com stocksybeta.zendesk.com js.zi-scripts.com ws.zoominfo.com widget-mediator.zopim.com; img-src 'self' file blob: data: https: pagead2.googlesyndication.com px.ads.linkedin.com ct.pinterest.com; media-src 'self' data: mediastream: https:; child-src 'self' prd-stocksy-private.s3.amazonaws.com *.doubleclick.net challenges.cloudflare.com www.facebook.com *.google.com www.googletagmanager.com tpc.googlesyndication.com *.hotjar.com e.issuu.com issuu.com *.paypal.com *.paypalobjects.com *.pinterest.at *.pinterest.ca *.pinterest.ch *.pinterest.cl *.pinterest.co.kr *.pinterest.co.uk *.pinterest.com.au *.pinterest.com.mx *.pinterest.com *.pinterest.de *.pinterest.dk *.pinterest.es *.pinterest.fr *.pinterest.ie *.pinterest.it *.pinterest.jp *.pinterest.nz *.pinterest.ph *.pinterest.pt *.pinterest.ru *.pinterest.se app.sli.do *.stocksy.com *.stripe.com www.surveymonkey.com *.vimeo.com vimeo.com *.youtube.com block.opendns.com www.securly.com *.zscloud.net *.zscalertwo.net mozbar.moz.com pwm-image.trendmicro.com; font-src 'self' data: https: chrome-extension:; form-action 'self' www.facebook.com ct.pinterest.com; object-src 'self' prd-stocksy-private.s3.amazonaws.com *.stocksy.com; frame-ancestors 'self' *.pinterest.at *.pinterest.ca *.pinterest.ch *.pinterest.cl *.pinterest.co.kr *.pinterest.co.uk *.pinterest.com.au *.pinterest.com.mx *.pinterest.com *.pinterest.de *.pinterest.dk *.pinterest.es *.pinterest.fr *.pinterest.ie *.pinterest.it *.pinterest.jp *.pinterest.nz *.pinterest.ph *.pinterest.pt *.pinterest.ru *.pinterest.se;
Report-To {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=TPoCDcrSP3sjydzS%2BUtoetkC1da7mv%2FfRrR37%2BFM21dJlpU%2BFFw%2FXZH9R2D9ri1n8%2F3unym9aEtbD%2B0J0NCLBb6I0dF8pDUKjPXYrs8Q%2F0FaF%2B6D2HtkUt76eaeAsWLQdA%3D%3D"}],"group":"cf-nel","max_age":604800}
Date Sat, 05 Apr 2025 12:57:56 GMT
Set-Cookie stocksy=cb52754a468a0880caf61099bd8076eb; expires=Sat, 12-Apr-2025 12:57:56 GMT; Max-Age=604800; path=/; domain=www.stocksy.com; secure; HttpOnly; SameSite=Lax

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar