HTTP Headers
Show the HTTP headers for a URL, with a full break-down of details. Will follow redirects.
Summary
- Response
- Total Requests
- 1
- Total Time
- 217 ms
https://www.encasabotanics.co.uk/
- Status
- 200
- Message
- OK
- Time
- 217 ms
- IP
- 23.227.38.74
Timing
Wait
0 ms
DNS
30 ms
TCP
3 ms
Request
0 ms
First Byte
176 ms
Download
1 ms
Total
217 ms
HTTP Headers
- Date
Sun, 08 Jun 2025 18:51:20 GMT
The date and time that the message was sent.
- Content-Type
text/html; charset=utf-8
The MIME type of this content.
Type
text/html
Description
HTML file
Charset
utf-8
- Connection
close
Control options for the current connection and list of hop-by-hop response fields.
close - The client or server would like to close the connection.
- X-Sorting-Hat-Podid
386
- X-Sorting-Hat-Shopid
37038653572
- X-Storefront-Renderer-Rendered
1
- Set-Cookie
localization=GB; path=/; expires=Mon, 08 Jun 2026 18:51:20 GMT; SameSite=Lax
A cookie sent from the server to be set on the client
localization
GB
Cookie name and value.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Mon, 08 Jun 2026 18:51:20 GMT
When the cookie should expire.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Set-Cookie
_shopify_y=9F13DC8D-b310-4979-a6ca-ba074e73bedb; domain=encasabotanics.co.uk; path=/; expires=Tue, 09 Jun 2026 00:51:20 GMT; SameSite=Lax
A cookie sent from the server to be set on the client
_shopify_y
9F13DC8D-b310-4979-a6ca-ba074e73bedb
Cookie name and value.
Domain
encasabotanics.co.uk
The client will only send the cookie when requesting from this domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Tue, 09 Jun 2026 00:51:20 GMT
When the cookie should expire.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Set-Cookie
_shopify_s=17863A63-d4ae-4A12-bd43-15bdf3b4532b; domain=encasabotanics.co.uk; path=/; expires=Sun, 08 Jun 2025 19:21:20 GMT; SameSite=Lax
A cookie sent from the server to be set on the client
_shopify_s
17863A63-d4ae-4A12-bd43-15bdf3b4532b
Cookie name and value.
Domain
encasabotanics.co.uk
The client will only send the cookie when requesting from this domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Sun, 08 Jun 2025 19:21:20 GMT
When the cookie should expire.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Set-Cookie
_tracking_consent=%7B%22con%22%3A%7B%22CMP%22%3A%7B%22a%22%3A%22%22%2C%22m%22%3A%22%22%2C%22p%22%3A%22%22%2C%22s%22%3A%22%22%7D%7D%2C%22v%22%3A%222.1%22%2C%22region%22%3A%22USNJ%22%2C%22reg%22%3A%22%22%2C%22purposes%22%3A%7B%22a%22%3Atrue%2C%22p%22%3Atrue%2C%22m%22%3Atrue%2C%22t%22%3Atrue%7D%2C%22display_banner%22%3Afalse%2C%22sale_of_data_region%22%3Afalse%2C%22consent_id%22%3A%22FF53D74E-5027-4F53-8654-92e8fbf1c380%22%7D; domain=encasabotanics.co.uk; path=/; expires=Mon, 08 Jun 2026 18:51:20 GMT; SameSite=Lax
A cookie sent from the server to be set on the client
_tracking_consent
%7B%22con%22%3A%7B%22CMP%22%3A%7B%22a%22%3A%22%22%2C%22m%22%3A%22%22%2C%22p%22%3A%22%22%2C%22s%22%3A%22%22%7D%7D%2C%22v%22%3A%222.1%22%2C%22region%22%3A%22USNJ%22%2C%22reg%22%3A%22%22%2C%22purposes%22%3A%7B%22a%22%3Atrue%2C%22p%22%3Atrue%2C%22m%22%3Atrue%2C%22t%22%3Atrue%7D%2C%22display_banner%22%3Afalse%2C%22sale_of_data_region%22%3Afalse%2C%22consent_id%22%3A%22FF53D74E-5027-4F53-8654-92e8fbf1c380%22%7D
Cookie name and value.
Domain
encasabotanics.co.uk
The client will only send the cookie when requesting from this domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Mon, 08 Jun 2026 18:51:20 GMT
When the cookie should expire.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Set-Cookie
_orig_referrer=; domain=encasabotanics.co.uk; path=/; expires=Sun, 22 Jun 2025 18:51:20 GMT; HttpOnly; SameSite=Lax
A cookie sent from the server to be set on the client
_orig_referrer
Cookie name and value.
Domain
encasabotanics.co.uk
The client will only send the cookie when requesting from this domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Sun, 22 Jun 2025 18:51:20 GMT
When the cookie should expire.
HttpOnly
Prevents access to the cookie through JavaScript.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Set-Cookie
_landing_page=%2F; domain=encasabotanics.co.uk; path=/; expires=Sun, 22 Jun 2025 18:51:20 GMT; HttpOnly; SameSite=Lax
A cookie sent from the server to be set on the client
_landing_page
%2F
Cookie name and value.
Domain
encasabotanics.co.uk
The client will only send the cookie when requesting from this domain.
Path
/
The client will only send the cookie when requesting this path, or subdirectories, from the server.
Expires
Sun, 22 Jun 2025 18:51:20 GMT
When the cookie should expire.
HttpOnly
Prevents access to the cookie through JavaScript.
Samesite
Lax
Cookie is not sent on cross-site requests but is when following a link to the origin.
- Link
<https://cdn.shopify.com>; rel="preconnect", <https://cdn.shopify.com>; rel="preconnect"; crossorigin
Used to express a typed relationship with another resource.
Link
- rel - preconnect
Link
- rel - preconnect
- crossorigin
- Speculation-Rules
"/cdn/shopifycloud/shopify/assets/storefront/storefronts.specrules-828df0376f942523726504d6cb4fbacd41a1db514689a84555c7d42872ee5363.json"
- Etag
W/"cacheable:bcb7945e7f5e68bea09025d6481c21a6"
An identifier for a specific version of a resource.
Validator
weak
A weak tag is easier to generate and prevents byte range caching.
Tag
cacheable:bcb7945e7f5e68bea09025d6481c21a6
- X-Cache
miss
Indicates whether a cache was used to server this response.
- Shopify-Complexity-Score
1280
- X-Frame-Options
DENY
Clickjacking protection.
DENY - No rendering within frame.
- Content-Security-Policy
block-all-mixed-content; frame-ancestors 'none'; upgrade-insecure-requests;
The content security policy allows the server to determine what resources the user is allowed to load.
block-all-mixed-content
Prevent mixed content access.
Frame-Ancestors
Define valid parents for frame, iframe, embed, object, and applet.
- 'none'
upgrade-insecure-requests
Treat insecure URLs as though they are secure.
- Strict-Transport-Security
max-age=7889238
A HSTS Policy informing the HTTP client how long to cache the HTTPS only policy and whether this applies to subdomains.
Max-Age
7889238 (91 days 7 hours 27 minutes 18 seconds)
The time a browser should remember a site can only be accessed with https (seconds).
- X-Shopid
37038653572
- X-Shardid
386
- Alt-Svc
h3=":443"; ma=86400
Indicate a resource should be loaded from a different server while still appearing to be loaded from this server.
Service
- h3 - :443
Service
- ma - 86400 (1 day)
Max age for the alternative (seconds).
- ma - 86400 (1 day)
- Content-Language
en-GB
The natural language or languages of the intended audience for the enclosed content.
en-GB - English
- Powered-By
Shopify
- Server-Timing
processing;dur=130;desc="gc:11", db;dur=55, db_async;dur=16.49, render;dur=51, asn;desc="14061", edge;desc="EWR", country;desc="US", theme;desc="97714864260", pageType;desc="index", servedBy;desc="4t8r", requestID;desc="a7a95afd-8579-4f3f-ac38-10ff38a253e2-1749408680"
Server metrics for the request.
Processing
gc:11
- dur - 130
Db
- dur - 55
Db_async
- dur - 16.49
Render
- dur - 51
Asn
14061
Edge
EWR
Country
US
Theme
97714864260
Pagetype
index
Servedby
4t8r
Requestid
a7a95afd-8579-4f3f-ac38-10ff38a253e2-1749408680
- X-Dc
gcp-us-east1,gcp-us-east1,gcp-us-east1
- X-Request-Id
a7a95afd-8579-4f3f-ac38-10ff38a253e2-1749408680
- Cf-Cache-Status
DYNAMIC
Encoded information about your request from Cloudflare.
DYNAMIC - This is not cached by default.
- Report-To
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=i1Q2%2F0%2BX2mwjr4Ho2p%2FtS77jiwuIA72Njo5M4mhgN%2Fs1W2EUUGxM656KN8y0Rw891Opr0GzbyJaOwP7KsMBIm55rKVzno51y7hjVeINl%2BSPHc7rdAzXoB56drxDBpNzpU1MgS4v6MSf5gg%3D%3D"}],"group":"cf-nel","max_age":604800}
Report to.
Endpoints
- {"url":"https://a.nel.cloudflare.com/report/v4?s=i1Q2%2F0%2BX2mwjr4Ho2p%2FtS77jiwuIA72Njo5M4mhgN%2Fs1W2EUUGxM656KN8y0Rw891Opr0GzbyJaOwP7KsMBIm55rKVzno51y7hjVeINl%2BSPHc7rdAzXoB56drxDBpNzpU1MgS4v6MSf5gg%3D%3D"}
Group
cf-nel
Max_age
604800
- Nel
{"success_fraction":0.01,"report_to":"cf-nel","max_age":604800}
Configure network request logging.
Success_fraction
0.01
Report_to
cf-nel
Max_age
604800
- Server-Timing
cfRequestDuration;dur=171.999931
Server metrics for the request.
Cfrequestduration
- dur - 171.999931
- X-Xss-Protection
1; mode=block
Cross-site scripting (XSS) filter.
1
Enable XSS filtering.
Mode
Filtering mode.
- block - Block page if XSS is detected.
- X-Content-Type-Options
nosniff
Prevents Internet Explorer from MIME-sniffing a response away from the declared content-type.
nosniff - Block requests if type 'style' or 'script'.
- X-Permitted-Cross-Domain-Policies
none
Specifies if a cross-domain policy is allowed.
none - No policy is allowed.
- X-Download-Options
noopen
- Shopify-Edge-Ip
23.227.38.74
- Server
cloudflare
A name for the server.
cloudflare - Description of the server software.
- Cf-Ray
94ca947ed9a1f834-EWR
Encoded information about your request from Cloudflare.