waze.com | Analytics by SecurityHeaders

HTTP Headers report for waze.com

Header Name Header Data
HTTP status code 200
Content-Security-Policy script-src 'self' 'unsafe-inline' http: https: 'strict-dynamic' 'sha256-XXdWM2WyPnxdbGkabhd+Z0MHKdvjaIHjYBIqwpQQv9E=' 'sha256-R/CAGqFl6mgfyijXO4RVSoiPYelEM4FX6oiLbfIAhQ8=' 'sha256-Z/J+GXilQFq6xrxWRqMxEnjc9k+nD3SWlIhWtr/920o=' 'sha256-eaRhvxD1NyP8b9GsCnJn4shBsc7mJmqH8vusmC6VJrs=' 'sha256-lntt6xwZpMVJD8VYW4eiAJ6xx2lnIJitf2UHpoGi0r4=' 'sha256-FikTNHWq1YBHf5yh3F5mO6U9XLskAxd7L8sqhZSj90E=' 'sha256-zL0aU/Lir4lMBdRerBlMmFYHCOAAg8yuI+ygpcLboF8=' 'sha256-X/FVCjhb8PU+z9Lbb8NCTi14BK/ypPVDR9/UVjCQTFU=' 'sha256-cHcUz07IE/X/gkCv1ws8nTrT7snEJcLJfvt+f6HaoZ4=' 'sha256-o0V4XA/UuHSCN11+6QO6C7mIPuHXEyKNF7OUynJnwHE=' 'sha256-km5s2eW6e4iAYEUANtLkFhJE+5UlQJdzOu7wiull/6A=' 'sha256-+u1nCgoZjKoqM1agqsmtatqm34K60mSseq+66saQb4Q=' 'sha256-24E4PBArT2df1gybvvsYTGMsjuQvQCfZFDKSU7ZS4W0=' 'sha256-Z/t/BIMaLjizflJUbtyDXwjEAvBAy2E25xzCRtAmEFg=' 'sha256-IokpJ+TiAnc9kgve06XVCARD2Y9QmuAUzqLInScXN4k=' 'sha256-iPgfla1g6skPXJfOQi9Nlpi6rHWSJFseKn1Bx1wJBFY=' 'sha256-/lG6xTLAk45bDSWSUcE+8fXAEsUsezkMbZ+l1vRBnWE=' 'sha256-oqPGJTQop9tHQS4fwvE/xAYKTh2mPOr1vp2/3Rgevyw=' 'sha256-VSJQ4+cw3530zJ90/8NGzDP0Cqg4bQ9FVdPaAGO7vkc=' 'sha256-xbQmtG6w61ivvPsp1j2ylmBFe7I7x0BpkKvhBHZcJII=' 'nonce-iZdnkbsO2m9p0s4UGcaIwg=='; style-src 'self' https: http: 'unsafe-inline'; font-src 'self' https: http:; connect-src 'self' www.google.com *.google-analytics.com *.analytics.google.com stats.g.doubleclick.net maps.googleapis.com *.waze.com *.wikipedia.org clouderrorreporting.googleapis.com; frame-src 'self' bid.g.doubleclick.net www.googletagmanager.com www.gcp.wazestg.com www.waze.com https://www.google.com/recaptcha/ https://recaptcha.google.com/recaptcha/; object-src 'none'; base-uri 'self'; default-src 'self'; img-src 'self' data: https: http: data:; report-uri https://csp.withgoogle.com/csp/wazelivemap/20250404_experiment
X-Waze-Name livemap
Date Sat, 12 Apr 2025 06:14:29 GMT
Cache-Control max-age=600, public
X-Dns-Prefetch-Control off
X-Content-Type-Options nosniff
X-Xss-Protection 1; mode=block
Vary Accept-Encoding
Age 588
Service-Extensions response-mutated
Via 1.1 google
X-Cloud-Trace-Context 8b3eb8db5ec293f119cb202c1886a53b/3737214291394915905;o=1
X-Download-Options noopen
Strict-Transport-Security max-age=63072000; includeSubDomains; preload
Content-Type text/html; charset=utf-8
X-Frame-Options SAMEORIGIN
Server Google Frontend
Etag W/"e057-tJ3mcQhXANp2lmq858ImdtwrfeQ"
Cross-Origin-Opener-Policy same-origin-allow-popups
Alt-Svc h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
Referrer-Policy strict-origin-when-cross-origin
X-Waze-Service waze-livemap-prod/livemap-00068-flz
Content-Security-Policy-Report-Only require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/waze-wfe;

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar