Technical Information
| HTTP Status Code | 200 |
| HTTP Version | HTTP/1.1 |
| HTTPS | ✔ Available |
| IP Address | 159.48.12.94 |
| Server Software | Apache |
| Compression | gzip |
|
ℹ 🔵 Missing Content Security Policy | CSP is not configured. It helps prevent XSS attacks and content injection. |
HTTP Status Code 200
HTTP Version HTTP/1.1
HTTPS ✔ Available
IP Address 159.48.12.94
Server Software Apache
Compression gzip
ℹ 🔵 Missing Content Security Policy CSP is not configured. It helps prevent XSS attacks and content injection.
Redirect Chain
| # | URL | HTTP Status Code | Status |
| 1 | https://scandic.de:443 | 301 | HTTP/2 301 |
| 2 | https://www.scandic.de/ | 200 | HTTP/2 200 |
#1 URL https://scandic.de:443
HTTP Status Code 301
Status HTTP/2 301
#2 URL https://www.scandic.de/
HTTP Status Code 200
Status HTTP/2 200
Performance
| DNS Lookup | 64.2 ms |
| TCP Connect | 93.7 ms |
| TLS Handshake | 21.5 ms |
| Time To First Byte (TTFB) | 385.5 ms |
| Content Download | 0.9 ms |
| Total Response Time | 386.3 ms |
DNS Lookup 64.2 ms
TCP Connect 93.7 ms
TLS Handshake 21.5 ms
Time To First Byte (TTFB) 385.5 ms
Content Download 0.9 ms
Total Response Time 386.3 ms
Security
| HTTPS | ✔ Enabled |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ Not configured |
| X-Frame-Options | ✔ deny |
| X-Content-Type-Options | ✔ nosniff |
| Referrer Policy | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Enabled
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ Not configured
X-Frame-Options ✔ deny
X-Content-Type-Options ✔ nosniff
Referrer Policy strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
Detected Technologies
| Technology | Vue.js jQuery Google Analytics Apache |
Technology Vue.js jQuery Google Analytics Apache
HTTP Headers
| Date
| Thu, 20 Aug 2026 08:55:02 GMT |
| Strict-transport-security
| max-age=31536000; includeSubDomains |
| X-frame-options
| deny |
| X-content-type-options
| nosniff |
| Referrer-policy
| strict-origin-when-cross-origin |
| Sw-language-id
| 2fbb5fe2e29a4d70aa5854ce7ce3e20b |
| Sw-currency-id
| b7d2554b0ce847cd82f3ac9bd1c0dfca |
| Vary
| sw-access-key,sw-language-id,sw-currency-id,sw-cache-hash,Accept-Encoding |
| Age
| 0 |
| Cache-control
| no-cache, private |
| Set-cookie
| sw-cache-hash=f2a9c1bdfb4c2fe2eaf5378d5a87a3be; expires=Sat, 19 Sep 2026 08:55:02 GMT; Max-Age=2592000; path=/; secure; httponly; samesite=lax |
| Content-encoding
| gzip |
| Content-length
| 20514 |
| Content-type
| text/html; charset=UTF-8 |
| Server
| Apache |
Meta Tags
| Viewport | width=device-width, initial-scale=1, shrink-to-fit=no |
| Robots | index,follow |
| Revisit-after | 15 days |
| Theme-color | #fff |
Date Thu, 20 Aug 2026 08:55:02 GMT
Strict-transport-security max-age=31536000; includeSubDomains
X-frame-options deny
X-content-type-options nosniff
Referrer-policy strict-origin-when-cross-origin
Sw-language-id 2fbb5fe2e29a4d70aa5854ce7ce3e20b
Sw-currency-id b7d2554b0ce847cd82f3ac9bd1c0dfca
Vary sw-access-key,sw-language-id,sw-currency-id,sw-cache-hash,Accept-Encoding
Age 0
Cache-control no-cache, private
Set-cookie sw-cache-hash=f2a9c1bdfb4c2fe2eaf5378d5a87a3be; expires=Sat, 19 Sep 2026 08:55:02 GMT; Max-Age=2592000; path=/; secure; httponly; samesite=lax
Content-encoding gzip
Content-length 20514
Content-type text/html; charset=UTF-8
Server Apache