HTTP Headers
Show the HTTP headers for a URL, with a full break-down of details. Will follow redirects.
Summary
- Response
- Total Requests
- 1
- Total Time
- 263 ms
https://t.me/mostbet_cz
- Status
- 200
- Message
- OK
- Time
- 263 ms
- IP
- 149.154.167.99
Timing
Wait
0 ms
DNS
1 ms
TCP
85 ms
Request
0 ms
First Byte
92 ms
Download
0 ms
Total
263 ms
HTTP Headers
- Server
nginx/1.18.0
A name for the server.
Server
nginx
Description of the server software.
Version
1.18.0
Version number.
- Date
Fri, 09 May 2025 22:21:27 GMT
The date and time that the message was sent.
- Content-Type
text/html; charset=utf-8
The MIME type of this content.
Type
text/html
Description
HTML file
Charset
utf-8
- Content-Length
11768(11.8 kB)
The length of the response body in octets (8-bit bytes).
- Connection
close
Control options for the current connection and list of hop-by-hop response fields.
close - The client or server would like to close the connection.
- Set-Cookie
stel_ssid=1c655036d0cffc042e_1800731793548427401; expires=Sat, 10 May 2025 22:21:27 GMT; path=/; samesite=None; secure; HttpOnly
A cookie sent from the server to be set on the client
stel_ssid
1c655036d0cffc042e_1800731793548427401
Cookie name and value.
Expires
Sat, 10 May 2025 22:21:27 GMT
When the cookie should expire.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Samesite
None
Cookie sent with both cross-site and same-site requests..
secure
The cookie is only sent when requesting from a https domain.
HttpOnly
Prevents access to the cookie through JavaScript.
- Pragma
no-cache
HTTP/1.0 backwards compatible cache handling.
no-cache - Force requests to the origin server before releasing a cache.
- Cache-Control
no-store
Inform all caching mechanisms from server to client whether they may cache this object.
no-store - May not be stored by any cache.
- X-Frame-Options
ALLOW-FROM https://web.telegram.org
Clickjacking protection.
ALLOW-FROM
Allow from specified location.
Problems were found.
- Header is deprecated and should be removed.
- Content-Security-Policy
frame-ancestors https://web.telegram.org
The content security policy allows the server to determine what resources the user is allowed to load.
Frame-Ancestors
Define valid parents for frame, iframe, embed, object, and applet.
- https://web.telegram.org
- Strict-Transport-Security
max-age=35768000
A HSTS Policy informing the HTTP client how long to cache the HTTPS only policy and whether this applies to subdomains.
Max-Age
35768000 (1 year 48 days 23 hours 33 minutes 20 seconds)
The time a browser should remember a site can only be accessed with https (seconds).