sutd.edu.sg | Analytics by SecurityHeaders

HTTP Headers report for sutd.edu.sg

Header Name Header Data
HTTP status code 200
Access-Control-Allow-Credentials true
Referrer-Policy strict-origin-when-cross-origin
Accept-Ranges bytes
Set-Cookie visid_incap_1697665=0W14Grk3RbWTeKCtVfQImu4gA2gAAAAAQUIPAAAAAACrqgmUzj3gAA1qc0zB8ONC; expires=Sat, 18 Apr 2026 22:36:25 GMT; HttpOnly; path=/; Domain=.sutd.edu.sg; Secure; SameSite=None
X-Cdn Imperva
Vary Accept-Encoding
Access-Control-Allow-Origin none
Access-Control-Allow-Headers Authorization, X-WP-Nonce, Content-Disposition, Content-MD5, Content-Type
X-Frame-Options SAMEORIGIN
Connection keep-alive
Access-Control-Allow-Methods GET, POST, OPTIONS
Permissions-Policy accelerometer=(self), microphone=(), geolocation=(self), payment=(), usb=()
Cache-Control max-age=300, must-revalidate
X-Cache HIT
X-Rq ams8 0 20 9980
Content-Type text/html; charset=UTF-8
X-Content-Type-Options nosniff
Content-Security-Policy font-src 'self' data: *.wp.com; frame-src 'self' *.wp.com wordpress.com *.marker.io momento360.com *.google.com *.youtube.com *.vimeo.com *.twitter.com *.googletagmanager.com *.doubleclick.net analytics-au.clickdimensions.com; img-src 'self' data: secure.gravatar.com *.wp.com *.curator.io curator-assets.b-cdn.net *.doubleclick.net *.google.com.sg *.google.com *.facebook.com *.googletagmanager.com *.linkedin.com *.quantserve.com *.parsely.com *.google-analytics.com *.clickdimensions.com; manifest-src 'self'; script-src-elem 'unsafe-inline' 'self' static.cloudflareinsights.com topaz.aichat.site s7.addthis.com z.moatads.com v1.addthisedge.com m.addthis.com www.googletagmanager.com www.google-analytics.com connect.facebook.net sutd.aichat.site eitri.api.useinsider.com sutdsg.api.useinsider.com www.youtube.com www.googleadservices.com snap.licdn.com cdn.taboola.com googleads.g.doubleclick.net trc.taboola.com amplify.outbrain.com secure.quantserve.com tr.outbrain.com rules.quantcount.com app-script.monsido.com analytics-au.clickdimensions.com assets.api.useinsider.com wt.adctrl.com cdn-au.clickdimensions.com cdn.unibuddy.co cse.google.com www.google.com www.gstatic.com sutdsg.inone.useinsider.com analytics.tiktok.com *.marker.io *.curator.io *.wp.com *.twitter.com *.parsely.com *.outbrain.com; connect-src 'self' api.marker.io s3.eu-west-1.amazonaws.com api.curator.io *.parsely.com *.google.com *.google-analytics.com *.doubleclick.net *.outbrain.com *.linkedin.com *.taboola.com *.tiktok.com; style-src-elem 'self' 'unsafe-inline' *.wp.com *.curator.io cdn-au.clickdimensions.com; object-src 'none'; upgrade-insecure-requests; base-uri 'none'; frame-ancestors 'self'
Strict-Transport-Security max-age=31536000;includeSubdomains
X-Iinfo 9-9507560-9507561 NNNN CT(1 5 0) RT(1745035503266 3) q(0 0 0 0) r(0 0) U24
Server nginx
Date Sat, 19 Apr 2025 04:05:03 GMT
Host-Header a9130478a60e5f9135f765b23f26593b

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar