HTTP Headers
Show the HTTP headers for a URL, with a full break-down of details. Will follow redirects.
Summary
- Response
- Total Requests
- 1
- Total Time
- 114 ms
https://lessons.drawspace.com/post/1088183/7575-dictionary-com- Status
- 200
- Message
- OK
- Time
- 114 ms
- IP
- 172.64.153.15
Timing
Wait
0 ms
DNS
13 ms
TCP
7 ms
Request
0 ms
First Byte
69 ms
Download
1 ms
Total
114 ms
HTTP Headers
- Date
Mon, 27 Jul 2026 06:42:06 GMT
The date and time that the message was sent.
- Content-Type
text/html; charset=utf-8
The MIME type of this content.
Problems were detected with this header
- Unknown MIME type.
- Connection
keep-alive
Control options for the current connection and list of hop-by-hop response fields.
keep-alive - The client would like to keep the connection open.
- Server
cloudflare
A name for the server.
cloudflare - Description of the server software.
- Expires
Thu, 19 Nov 1981 08:52:00 GMT
The time at which the response is considered stale.
- Cache-Control
no-store, no-cache, must-revalidate
Inform all caching mechanisms from server to client whether they may cache this object.
no-store
May not be stored by any cache.
no-cache
May be stored by any cache but must be validated by the server.
must-revalidate
Stale caches must not be used.
- Pragma
no-cache
HTTP/1.0 backwards compatible cache handling.
no-cache - Force requests to the origin server before releasing a cache.
- X-Frame-Options
SAMEORIGIN
Clickjacking protection.
SAMEORIGIN - No rendering if origin mismatch.
- Strict-Transport-Security
max-age=63072000; includeSubDomains
A HSTS Policy informing the HTTP client how long to cache the HTTPS only policy and whether this applies to subdomains.
Max-Age
63072000 (2 years)
The time a browser should remember a site can only be accessed with https (seconds).
includesubdomains
max-age applies to subdomains as well.
- X-Xss-Protection
1; mode=block
Cross-site scripting (XSS) filter.
1
Enable XSS filtering.
Mode
Filtering mode.
- block - Block page if XSS is detected.
- Set-Cookie
drawspace=c83faf44a78ed6ee9d74efecacaa8572; expires=Wed, 26-Aug-2026 06:42:06 GMT; Max-Age=2592000; path=/
A cookie sent from the server to be set on the client
drawspace
c83faf44a78ed6ee9d74efecacaa8572
Cookie name and value.
Expires
Wed, 26-Aug-2026 06:42:06 GMT
When the cookie should expire.
Max-Age
2592000 (30 days)
Number of seconds until the cookie expires.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
- Set-Cookie
__cf_bm=lezBvYGOQPPQQerQskaUZbe23MWqOVN7o9LSY1aYduQ-1785134526.027981-1.0.1.1-DsNL2TbstLX8PPdtleqFonooVNF2yO5qKwy6OLAPTtz9e_WnstIyOcFHwIaUI6BccCs19lklEdbtthdn4zQPG09zJAUyM7omTOi3kF4V4.ERSRLeLw93hDG1ug6dcC7A; HttpOnly; SameSite=None; Secure; Path=/; Domain=lessons.drawspace.com; Expires=Mon, 27 Jul 2026 07:12:06 GMT
A cookie sent from the server to be set on the client
__cf_bm
lezBvYGOQPPQQerQskaUZbe23MWqOVN7o9LSY1aYduQ-1785134526.027981-1.0.1.1-DsNL2TbstLX8PPdtleqFonooVNF2yO5qKwy6OLAPTtz9e_WnstIyOcFHwIaUI6BccCs19lklEdbtthdn4zQPG09zJAUyM7omTOi3kF4V4.ERSRLeLw93hDG1ug6dcC7A
Cookie name and value.
HttpOnly
Prevents access to the cookie through JavaScript.
Samesite
None
Cookie sent with both cross-site and same-site requests..
Secure
The cookie is only sent when requesting from a https domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Domain
lessons.drawspace.com
The client will only send the cookie when requesting from this domain.
Expires
Mon, 27 Jul 2026 07:12:06 GMT
When the cookie should expire.
- Cf-Cache-Status
BYPASS
Encoded information about your request from Cloudflare.
BYPASS - Cloudflare has been instructed to not cache this.
- Vary
accept-encoding
Indicates that different content may be provided to different clients, depending on the vary header.
Headers
- accept-encoding
- Cf-Ray
a219a983ad045f83-EWR
Encoded information about your request from Cloudflare.