utc.edu | Analytics by SecurityHeaders

HTTP Headers report for utc.edu

Header Name Header Data
HTTP status code 200
Cache-Control max-age=31536000, public
Expires Sun, 19 Nov 1978 05:00:00 GMT
Vary Cookie,Accept-Encoding
Date Tue, 06 May 2025 22:41:40 GMT
Content-Language en
Strict-Transport-Security max-age=1000
Last-Modified Tue, 06 May 2025 22:41:32 GMT
Server cloudflare
Connection keep-alive
X-Cache HIT
Cf-Cache-Status DYNAMIC
Cf-Ray 93bbfc823edac886-AMS
Content-Security-Policy default-src 'self' blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://www.googletagmanager.com analytics.tiktok.com *.geckochat.io *.geckoform.com www.youvisit.com connect.facebook.net tr.snapchat.com sc-static.net googleads.g.doubleclick.net *.googleapis.com *.googleadservices.com *.googletagmanager.com *.google-analytics.com *.google.com *.gstatic.com libraryh3lp.com *.digitalmeasures.com *.visitdays.com *.cloudflare.com *.cloudflareinsights.com *.shopwindow.io *.licdn.com *.app-us1.com script.crazyegg.com platform.twitter.com *.twimg.com *.libwizard.com *.libapps.com unpkg.com cdn.jsdelivr.net js-agent.newrelic.com bam.nr-data.net *.cloudfront.net utc886.activehosted.com trackcmp.net *.fontawesome.com *.monsido.com *.adsrvr.org *.clarity.ms *.utc.edu utchatt.h5p.com sveltecredentialvalidation.pages.dev www.redditstatic.com *.youtube.com *.issuu.com analytics.silktide.com; object-src 'self'; style-src 'self' 'unsafe-inline' *.geckochat.io *.geckoform.com *.visitdays.com *.fontawesome.com *.googleapis.com *.google.com *.gstatic.com *.safetyhandler.com *.shopwindow.io *.digitalmeasures.com platform.twitter.com unpkg.com *.monsido.com *.utc.edu utchatt.h5p.com sveltecredentialvalidation.pages.dev *.googletagmanager.com; img-src 'self' data: trck.youvisit.com *.geckochat.io *.geckoform.com www.facebook.com tr.snapchat.com *.google.com *.google-analytics.com *.googletagmanager.com *.googleapis.com *.gstatic.com *.utc.edu *.safetyhandler.com *.shopwindow.io *.ads.linkedin.com *.adsymptotic.com *.digitalmeasures.com libapps.s3.amazonaws.com se-images.campuslabs.com *.twimg.com platform.twitter.com www.linkedin.com *.monsido.com alb.reddit.com analytics.tiktok.com *.clarity.ms d3e1o4bcbhmj8g.cloudfront.net googleads.g.doubleclick.net i0.wp.com localist-images.azureedge.net secure.adnxs.com stats.g.doubleclick.net *.bing.com *.utc.edu staticmap.concept3d.com *.googleusercontent.com utchatt.h5p.com syndicatedsearch.goog *.adsensecustomsearchads.com i.ytimg.com google.com connect.facebook.net; media-src 'self' *.geckochat.io *.geckoform.com *.safetyhandler.com *.digitaloceanspaces.com *.contentdm.oclc.org *.utc.edu *.vimeo.com fred.stlouisfed.org utchatt.h5p.com; frame-src 'self' *.youvisit.com tr.snapchat.com iframe.utc.edu digital-collections.library.utc.edu libraryh3lp.com *.google.com *.googlesyndication.com *.googletagmanager.com *.youtube.com *.youtu.be *.issuu.com iframe.videodelivery.net *.concept3d.com platform.twitter.com syndication.twitter.com *.libwizard.com yoshki.com *.monsido.com *.powerbi.com *.adsrvr.org td.doubleclick.net www.facebook.com youtube-nocookie.com *.youtube-nocookie.com *.utc.edu *.visitdays.com map.concept3d.com *.vimeo.com fred.stlouisfed.org utchatt.h5p.com dashboard.utccuip.com *.kaltura.com airtable.com issuu.com syndicatedsearch.goog *.adsensecustomsearchads.com igtlab.maps.arcgis.com *.flywire.com *.cloudflarestream.com *.studentaidcalculator.com apps.powerapps.com utchattanooga.instructuremedia.com utcperformingarts.shopwindow.io *.qualtrics.com; frame-ancestors 'self' *.googletagmanager.com *.libwizard.com *.utc.edu *.utccloud.com *.monsido.com *.vimeo.com fred.stlouisfed.org utchatt.h5p.com dashboard.utccuip.com *.kaltura.com airtable.com issuu.com syndicatedsearch.goog *.adsensecustomsearchads.com igtlab.maps.arcgis.com *.flywire.com *.cloudflarestream.com *.studentaidcalculator.com apps.powerapps.com *.qualtrics.com; child-src 'self' blob: iframe.utc.edu digital-collections.library.utc.edu libraryh3lp.com *.google.com *.googletagmanager.com *.youtube.com *.youtu.be *.issuu.com iframe.videodelivery.net *.concept3d.com platform.twitter.com syndication.twitter.com *.libwizard.com yoshki.com *.fontawesome.com *.utc.edu *.vimeo.com fred.stlouisfed.org dashboard.utccuip.com *.kaltura.com airtable.com issuu.com syndicatedsearch.goog *.adsensecustomsearchads.com igtlab.maps.arcgis.com *.flywire.com *.cloudflarestream.com *.studentaidcalculator.com apps.powerapps.com *.qualtrics.com; font-src 'self' data: *.geckochat.io *.geckoform.com *.fontawesome.com fonts.googleapis.com fonts.gstatic.com *.safetyhandler.com *.utc.edu; connect-src 'self' ws: *.geckochat.io *.geckoform.com *.withgoogle.com google.com *.facebook.com *.crazyegg.com analytics.tiktok.com *.google.com *.googleapis.com libraryh3lp.com secure.cecredentialtrust.com:* *.utc.edu *.visitdays.com *.shopwindow.io *.safetyhandler.com script.crazyegg.com *.digitalmeasures.com *.google-analytics.com *.doubleclick.net bam.nr-data.net conversations.app-us1.com realtime.ably.io *.fontawesome.com *.monsido.com *.clarity.ms *.ads.linkedin.com *.snapchat.com www.redditstatic.com *.utc.edu pixel-config.reddit.com www.googleadservices.com; report-uri https://utchattanooga.report-uri.com/r/d/csp/reportOnly; upgrade-insecure-requests
X-Request-Id v-42e0bf62-2acb-11f0-b164-f7890c7fa727
X-Cache-Hits 3
Alt-Svc h3=":443"; ma=86400
X-Content-Type-Options nosniff
X-Generator Drupal 10 (https://www.drupal.org)
Age 6
Via varnish
Content-Type text/html; charset=UTF-8
X-Xss-Protection 1
Access-Control-Allow-Origin https://liblab.utc.edu
X-Drupal-Dynamic-Cache UNCACHEABLE (poor cacheability)
X-Drupal-Cache HIT
X-Ah-Environment prod

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar