HTTP Headers
Show the HTTP headers for a URL, with a full break-down of details. Will follow redirects.
Summary
- Response
- Total Requests
- 1
- Total Time
- 90 ms
https://fosterestateplanning.com/members/flagcolt30/activity/1248301/- Status
- 404
- Message
- Not Found
- Time
- 90 ms
- IP
- 198.49.23.145
Timing
Wait
0 ms
DNS
9 ms
TCP
4 ms
Request
0 ms
First Byte
67 ms
Download
0 ms
Total
90 ms
HTTP Headers
- Age
0
The age the object has been in a proxy cache in seconds.
- Content-Length
20772(20.8 kB)
The length of the response body in octets (8-bit bytes).
- Content-Type
text/html;charset=utf-8
The MIME type of this content.
Type
text/html
Description
HTML file
Charset
utf-8
- Date
Fri, 01 May 2026 15:45:51 GMT
The date and time that the message was sent.
- Etag
W/"67a7eeb2271de4bbebcbb802ee82d11f"
An identifier for a specific version of a resource.
Validator
weak
A weak tag is easier to generate and prevents byte range caching.
Tag
67a7eeb2271de4bbebcbb802ee82d11f
- Expires
Thu, 01 Jan 1970 00:00:00 GMT
The time at which the response is considered stale.
- Server
Squarespace
A name for the server.
Squarespace - Description of the server software.
- Set-Cookie
crumb=BS3pPMOryuHbNjhlZjg2YTBhNTU5OTE2YTljMzY4ZWE5MWU3MDAx;Secure;Path=/
A cookie sent from the server to be set on the client
crumb
BS3pPMOryuHbNjhlZjg2YTBhNTU5OTE2YTljMzY4ZWE5MWU3MDAx
Cookie name and value.
Secure
The cookie is only sent when requesting from a https domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
- Strict-Transport-Security
max-age=15552000
A HSTS Policy informing the HTTP client how long to cache the HTTPS only policy and whether this applies to subdomains.
Max-Age
15552000 (180 days)
The time a browser should remember a site can only be accessed with https (seconds).
- Vary
Accept-Encoding
Indicates that different content may be provided to different clients, depending on the vary header.
Headers
- Accept-Encoding
- X-Content-Type-Options
nosniff
Prevents Internet Explorer from MIME-sniffing a response away from the declared content-type.
nosniff - Block requests if type 'style' or 'script'.
- X-Contextid
IFiHUOGe/2vCmcD4p
- X-Frame-Options
SAMEORIGIN
Clickjacking protection.
SAMEORIGIN - No rendering if origin mismatch.
- X-Frame-Options
SAMEORIGIN
Clickjacking protection.
SAMEORIGIN - No rendering if origin mismatch.
Problems were detected with this header
- Duplicate header. There is another header with this name and this may cause problems.