Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 150.171.110.117 |
|
🔒 🟡 Mixed Content (1 HTTP resources) | The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers. |
|
ℹ 🔵 No Compression | The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 150.171.110.117
🔒 🟡 Mixed Content (1 HTTP resources) The page is served over HTTPS but loads 1 resource(s) over HTTP. This may be blocked in modern browsers.
ℹ 🔵 No Compression The server does not use Gzip or Brotli. Enable compression to reduce bandwidth usage.
Performance
| DNS Lookup | 30 ms |
| TCP Connect | 31.3 ms |
| TLS Handshake | 6.2 ms |
| Time To First Byte (TTFB) | 413.7 ms |
| Content Download | 0 ms |
| Total Response Time | 413.8 ms |
DNS Lookup 30 ms
TCP Connect 31.3 ms
TLS Handshake 6.2 ms
Time To First Byte (TTFB) 413.7 ms
Content Download 0 ms
Total Response Time 413.8 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains; preload |
| CSP | ✔ Configured |
| X-Frame-Options | ✔ sameorigin |
| X-Content-Type-Options | ✔ nosniff |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains; preload
CSP ✔ Configured
X-Frame-Options ✔ sameorigin
X-Content-Type-Options ✔ nosniff
HTTP/2 ⚠ HTTP/1.1
SEO Quick Check
Title BlueFire Giving
Detected Technologies
| Technology | Google Analytics Google Tag Manager Intercom |
Technology Google Analytics Google Tag Manager Intercom
HTTP Headers
| Date
| Wed, 19 Aug 2026 23:36:01 GMT |
| Content-type
| text/html |
| Content-length
| 1801 |
| Cache-control
| private |
| Set-cookie
| ASPSESSIONIDSUBSRRQR=KFEJDDFBEHPADAHMGMKMNLAB; secure; path=/; HttpOnly |
| Strict-transport-security
| max-age=31536000; includeSubDomains; preload |
| X-powered-by
| ASP.NET |
| X-content-type-options
| nosniff |
| X-xss-protection
| 1; mode=block |
| X-frame-options
| sameorigin |
| Content-security-policy
| default-src https:; connect-src https: wss://nexus-websocket-a.intercom.io wss://nexus-websocket-b.intercom.io; font-src https: data:; frame-src https:; img-src https: data:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; style-src 'unsafe-inline' https:; frame-ancestors https:; report-uri https://api.mbgiving.com/Internal/CSPReportUri; |
| X-azure-ref
| 20260819T233600Z-17cd98584459sf8shC1PAR994w0000003cw0000000005t2f |
| X-cache
| CONFIG_NOCACHE |
| Accept-ranges
| bytes |
Date Wed, 19 Aug 2026 23:36:01 GMT
Content-type text/html
Content-length 1801
Cache-control private
Set-cookie ASPSESSIONIDSUBSRRQR=KFEJDDFBEHPADAHMGMKMNLAB; secure; path=/; HttpOnly
Strict-transport-security max-age=31536000; includeSubDomains; preload
X-powered-by ASP.NET
X-content-type-options nosniff
X-xss-protection 1; mode=block
X-frame-options sameorigin
Content-security-policy default-src https:; connect-src https: wss://nexus-websocket-a.intercom.io wss://nexus-websocket-b.intercom.io; font-src https: data:; frame-src https:; img-src https: data:; media-src https:; object-src https:; script-src 'unsafe-inline' 'unsafe-eval' https:; style-src 'unsafe-inline' https:; frame-ancestors https:; report-uri https://api.mbgiving.com/Internal/CSPReportUri;
X-azure-ref 20260819T233600Z-17cd98584459sf8shC1PAR994w0000003cw0000000005t2f
X-cache CONFIG_NOCACHE
Accept-ranges bytes