Header Name | Header Data |
---|---|
HTTP status code | 200 |
Access-Control-Allow-Methods | * |
Set-Cookie | lb_cookie="1e5558a493403246"; HttpOnly; Secure; Path=/ |
Cache-Control | private |
Content-Type | text/html; charset=utf-8 |
X-Content-Type-Options | nosniff |
Date | Sat, 19 Apr 2025 13:27:34 GMT |
Server | volt-adc |
Access-Control-Allow-Origin | https://www.anek.gr |
X-Frame-Options | SAMEORIGIN |
Content-Security-Policy | default-src 'self'; frame-src 'self' aax-eu.amazon-adsystem.com ct.pinterest.com https://www.googletagmanager.com www.google.com www.youtube.com live.brame-gamification.com *.paypal.com www.facebook.com weatherwidget.io tpc.googlesyndication.com td.doubleclick.net; media-src 'self'; img-src 'self' data: maps.gstatic.com sp.analytics.yahoo.com maps.googleapis.com *.paypal.com uip.semasio.net www.google.com www.facebook.com www.google.gr bold.adman.gr cdn.cookielaw.org www.googletagmanager.com www.google.nl ads.travelaudience.com sherlock.adman.gr ad.doubleclick.net googleads.g.doubleclick.net adservice.google.com tr.outbrain.com cm.g.doubleclick.net ad.yieldlab.net pixel.rubiconproject.com image2.pubmatic.com ice.360yield.com ih.adscale.de ib.adnxs.com ads.betweendigital.com p1.zemanta.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.zemanta.com c.amazon-adsystem.com ct.pinterest.com *.pinimg.com *.tiktok.com https://*.adform.net *.paypal.com *.paypalobjects.com *.braintreegateway.com sp.analytics.yahoo.com connect.facebook.net s.yimg.com maps.googleapis.com www.googletagmanager.com www.google.com www.youtube.com www.gstatic.com cdn.cookielaw.org weatherwidget.io ads.travelaudience.com www.googleadservices.com theferries.com tpc.googlesyndication.com tr.outbrain.com amplify.outbrain.com wave.outbrain.com js-tag.zemanta.com; connect-src 'self' aax-eu.amazon-adsystem.com ara.paa-reporting-advertising.amazon ct.pinterest.com *.tiktok.com *.zemanta.com https://pagead2.googlesyndication.com https://region1.google-analytics.com https://www.googleadservices.com https://amplify.outbrain.com maps.googleapis.com *.braintreegateway.com *.paypal.com *.paypalobjects.com *.braintree-api.com cdn.cookielaw.org *.analytics.google.com stats.g.doubleclick.net s.yimg.com privacyportal-eu.onetrust.com geolocation.onetrust.com adservice.google.com www.google.com www.google.gr tr.outbrain.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com; font-src 'self' fonts.gstatic.com; object-src 'none' |
Strict-Transport-Security | max-age=63072000; includeSubDomains |
X-Envoy-Upstream-Service-Time | 189 |
Access-Control-Allow-Headers | * |
X-Xss-Protection | 1; mode=block |
Content-Length | 204912 |
By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.
This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.
We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.
Watch it now at TrustRadar