yelp.com.au | Analytics by SecurityHeaders

HTTP Headers report for yelp.com.au

Header Name Header Data
HTTP status code 200
X-Routing-Service routing-main--useast1-5b4cf4c94b-j6hj9; site=www
Content-Type text/html; charset=UTF-8
Strict-Transport-Security max-age=31536000; includeSubDomains; preload
Cache-Control max-age=0, no-store, private, no-transform
X-Extlb 10-65-181-203-useast1bprod
Via 1.1 ce212714683674e5fb514cf3923f165c.cloudfront.net (CloudFront)
X-Amz-Cf-Pop CPH50-C2
X-Content-Type-Options nosniff
X-Zipkin-Id d6c3b03784d98d95e69f6a1f14d22d24
Vary Accept-Encoding
X-Proxied 10-65-181-203-useast1bprod
X-B3-Sampled 0
Pragma no-cache
Connection keep-alive
X-Node www_all
Set-Cookie location=%7B%22city%22%3A+%22Amsterdam%22%2C+%22state%22%3A+%22NH%22%2C+%22country%22%3A+%22NL%22%2C+%22latitude%22%3A+52.365001%2C+%22longitude%22%3A+4.890343%2C+%22max_latitude%22%3A+52.3922281%2C+%22min_latitude%22%3A+52.3377749%2C+%22max_longitude%22%3A+4.9340138%2C+%22min_longitude%22%3A+4.8466731%2C+%22zip%22%3A+%22%22%2C+%22address1%22%3A+%22%22%2C+%22address2%22%3A+%22%22%2C+%22address3%22%3A+null%2C+%22neighborhood%22%3A+null%2C+%22borough%22%3A+null%2C+%22provenance%22%3A+%22YELP_GEOCODING_ENGINE%22%2C+%22display%22%3A+%22Amsterdam%2C+Noord-Holland%2C+The+Netherlands%22%2C+%22unformatted%22%3A+%22Amsterdam%2C+Noord-Holland%2C+The+Netherlands%22%2C+%22isGoogleHood%22%3A+null%2C+%22usingDefaultZip%22%3A+null%2C+%22accuracy%22%3A+4.0%2C+%22language%22%3A+null%7D; Domain=.yelp.com.au; Max-Age=31536000; Path=/; expires=Thu, 16-Apr-2026 16:33:47 GMT
Content-Security-Policy-Report-Only report-uri https://www.yelp.com/csp_report_only?id=e652574e79408cf8&page=csp_report_frame_directives%2Cfull_site_ssl_csp_report_directives&policy_hash=41d0c45536d2a082f11d1cd0e00fde7f&site=www&timestamp=1744821227; frame-ancestors 'self' https://*.yelp.com; default-src https:; img-src https: data: blob:; script-src https: data: 'unsafe-inline' 'unsafe-eval' blob:; style-src https: 'unsafe-inline' data:; font-src data: https:; child-src https: yelp-webview://* yelp://* data:; object-src 'none'; worker-src blob: https:; base-uri 'self'; form-action https:
Content-Security-Policy report-uri https://www.yelp.com/csp_block?id=e652574e79408cf8&page=enforced_by_default_directives&policy_hash=4a31667603ab2e38c60aeeb09daa5097&site=www&timestamp=1744821227; object-src 'self'; base-uri 'self' https://*.yelpcdn.com https://*.adsrvr.org https://6372968.fls.doubleclick.net; font-src 'self' data: https:
Link https://s3-media0.fl.yelpcdn.com; rel=preconnect
X-Cache Miss from cloudfront
X-Amz-Cf-Id mv0DzJxpTE5tkOfkMZit9oyWIKE9v-PIEo2XnN0LB1PhwCQ9qFhrdw==
X-Frame-Options SAMEORIGIN
X-Mode ro
Alt-Svc h3=":443"; ma=86400
X-Tracing-Auth LtZ1QpoyJu2YXSNCrg83yqoFyflDc7xetB_Cc45-ufJGhOO-or6CL1-mIaKnNjz4
Server envoy
Date Wed, 16 Apr 2025 16:33:47 GMT

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar