HTTP Headers Analyzer
Analyze HTTP response headers, security headers, cookies, and redirects.
Example output
Pre-computed real result from running HTTP Headers Analyzer againsthttps://krawly.ioSurfaces every response header a site sends — security headers, caching directives, server fingerprint, bot-protection signals, and detected CDN.
- Server
- nginx/1.24.0 (Ubuntu)
- HSTS
- max-age=31536000; includeSubDomains
- X-Frame-Options
- SAMEORIGIN
- Content-Security-Policy
- Not set
- Referrer-Policy
- strict-origin-when-cross-origin
- Cache-Control
- s-maxage=31536000
What this tells you: Run this on your own site as a security baseline — a missing HSTS or CSP header is the most common configuration gap and the easiest to fix.
↓ Run the tool below with your own input