 
                HSTS - Browser HTTPS Only for domain and subdomains 
                 Download List of All Websites using HSTS - Browser HTTPS Only for domain and subdomains 
                 
                The HTTP Strict-Transport-Security response header (often abbreviated as HSTS) lets a web site tell browsers that it should only be accessed using HTTPS, instead of using HTTP for domain and subdomainsfor 31536000 seconds
             
               
                         
                
                
                
                HSTS - Browser HTTPS Only  
                 Download List of All Websites using HSTS - Browser HTTPS Only  
                 
                The HTTP Strict-Transport-Security response header (often abbreviated as HSTS) lets a web site tell browsers that it should only be accessed using HTTPS, instead of using HTTP for 15768000 seconds
             
               
                         
                
                
                
                Vary Header Accept-Encoding
                 Download List of All Websites using Vary Header Accept-Encoding
                 
                The Accept-Encoding request HTTP header advertises which content encoding, usually a compression algorithm, the client is able to understand. Using content negotiation, the server selects one of the proposals, uses it and informs the client of its choice with the Content-Encoding response header.
             
               
                
                
               Tags:
               
           
               
           
               
           
              
               
                         
                
                
                
                Cache-Control Header Max-Age
                 Download List of All Websites using Cache-Control Header Max-Age
                 
                Specifies the maximum amount of time a resource will be considered fresh. Contrary to Expires, this directive is relative to the time of the request. this website is having max-age=180 secs.
             
               
                
                
               Tags:
               
           
               
           
              
               
                         
                
                
                
                XSS-Protection Header
                 Download List of All Websites using XSS-Protection Header
                 
                The HTTP X-XSS-Protection response header is a feature of Internet Explorer, Chrome and Safari that stops pages from loading when they detect reflected cross-site scripting (XSS) attacks. Although these protections are largely unnecessary in modern browsers when sites implement a strong Content-Security-Policy that disables the use of inline JavaScript (`unsafe-inline`), they can still provide protections for users of older web browsers that don`t yet support CSP.
             
               
                
                
               Tags: