zeit.co | Analytics by SecurityHeaders

HTTP Headers report for zeit.co

Header Name Header Data
HTTP status code 200
Content-Disposition inline
Date Sat, 05 Apr 2025 21:35:06 GMT
Server Vercel
Strict-Transport-Security max-age=31536000; includeSubDomains; preload
X-Vercel-Ip-Country NL
X-Vercel-Ip-Latitude 52.3759
Age 24109
X-Frame-Options DENY
X-Xss-Protection 0
Content-Type text/html; charset=utf-8
Feature-Policy fullscreen 'self'; camera 'none'
Referrer-Policy origin-when-cross-origin
X-Dns-Prefetch-Control on
X-Matched-Path /home/eyJhbGciOiJIUzI1NiJ9.AP0.7cQg-Q2tj1BAyHFfT32HLI3JRdEfYCiANjbtqRiDfLs
X-Vercel-Cache HIT
X-Vercel-Id fra1::c9bjz-1743888906820-1b1e63fcbf52
X-Vercel-Ip-Country-Region NH
X-Vercel-Ip-Timezone Europe/Amsterdam
X-Middleware-Rewrite https://vercel.com/home/eyJhbGciOiJIUzI1NiJ9.AP0.7cQg-Q2tj1BAyHFfT32HLI3JRdEfYCiANjbtqRiDfLs
X-Nextjs-Stale-Time 4294967294
Content-Security-Policy default-src 'self' vercel.com *.vercel.com *.vercel.sh vercel.live wss://*.vercel.com *.codesandbox.io localhost:* chrome-extension://* https://www.youtube-nocookie.com *.chilipiper.com https://risk.clearbit.com;script-src 'self' 'unsafe-eval' 'unsafe-inline' 'inline-speculation-rules' https://cdn.heapanalytics.com *.heapanalytics.com https://www.googletagmanager.com https://www.google-analytics.com https://snap.licdn.com https://www.youtube.com *.doubleclick.net cdn.vercel-insights.com va.vercel-scripts.com vercel.com *.vercel.com *.vercel.sh vercel.live wss://*.vercel.com *.codesandbox.io localhost:* chrome-extension://* https://www.youtube-nocookie.com *.chilipiper.com https://risk.clearbit.com;style-src 'self' 'unsafe-inline' vercel.com *.vercel.com *.vercel.sh vercel.live wss://*.vercel.com *.codesandbox.io localhost:* chrome-extension://* https://www.youtube-nocookie.com *.chilipiper.com https://risk.clearbit.com;img-src 'self' blob: data: *.github.io avatars.githubusercontent.com user-images.githubusercontent.com vercel.com vercel.live *.vercel.sh assets.vercel.com cdn.raster.app https://images.ctfassets.net https://heapanalytics.com https://*.ads.linkedin.com https://www.google.com https://i.ytimg.com https://s3.amazonaws.com;media-src 'self' blob: data: vercel.com *.vercel.com *.vercel.sh vercel.live wss://*.vercel.com *.codesandbox.io localhost:* chrome-extension://* https://www.youtube-nocookie.com *.chilipiper.com https://risk.clearbit.com;connect-src 'self' data: *.chilipiper.com *.ingest.sentry.io *.ingest.us.sentry.io wss://ws-us3.pusher.com sockjs-use3.pusher.com https://api.getkoala.com https://analytics.google.com https://www.google-analytics.com *.ads.linkedin.com *.doubleclick.net vercel.com *.vercel.com *.vercel.sh vercel.live wss://*.vercel.com *.codesandbox.io localhost:* chrome-extension://* https://www.youtube-nocookie.com *.chilipiper.com https://risk.clearbit.com;font-src 'self' vercel.com assets.vercel.com vercel.live fonts.gstatic.com *.vercel.sh;frame-ancestors 'none';
X-Nextjs-Prerender 1
X-Vercel-Ip-As-Number 216154
X-Vercel-Ip-City Amsterdam
X-Vercel-Ip-Continent EU
X-Vercel-Ip-Longitude 4.8975
X-Vercel-Ip-Postal-Code 1012
X-Content-Type-Options nosniff
Cache-Control public, max-age=0, must-revalidate
Etag W/"d105cb87f18b4dae0f153cab06cb426d"
Access-Control-Allow-Origin *
X-Download-Options noopen

About the tool

By using SecurityHeaders.info, you can quickly identify missing or misconfigured headers and take steps to secure your website, improving both security and user confidence.

This tool is widely used by developers, security professionals, and organizations to ensure their websites adhere to best practices in web security.

We also have another analytic tool that is used for identifying popularity metrics, general information about the business, finding similar products and competitors, and much more.

Watch it now at TrustRadar