HTTP Response Headers Inspector

Check HTTP status codes (200, 301, 404), server technologies, compression, and security headers (CSP, HSTS).

📑

HTTP Response for linkedin.com

HTTP/1.1 200 OK
Header Field Value
Status HTTP/1.1 200 OK
content-type text/html; charset=utf-8
vary Sec-Fetch-Dest, Sec-Fetch-Mode, Sec-Fetch-Site
x-ua-compatible IE=edge
access-control-allow-origin *
cache-control no-cache, no-store, max-age=0, must-revalidate
pragma no-cache
expires Mon, 01 Jan 1990 00:00:00 GMT
date Tue, 06 Oct 2026 20:11:11 GMT
Content-Length 0
strict-transport-security max-age=31536000
content-security-policy script-src 'report-sample' 'nonce-yPsHzm_Mht9zHvZy0u1DYQ' 'unsafe-inline';object-src 'none';base-uri www.google.com;report-uri /recaptcha/challengepage/_/RecaptchaChallengePageUi/cspreport;worker-src 'self', script-src 'unsafe-inline' 'unsafe-eval' blob: data: 'self' https://apis.google.com https://ssl.gstatic.com https://www.google.com https://www.googletagmanager.com https://www.gstatic.com https://www.google-analytics.com https://recaptcha-staging.corp.google.com/;report-uri /recaptcha/challengepage/_/RecaptchaChallengePageUi/cspreport/allowlist;base-uri www.google.com, require-trusted-types-for 'script';report-uri /recaptcha/challengepage/_/RecaptchaChallengePageUi/cspreport
content-security-policy-report-only script-src 'unsafe-inline' 'unsafe-eval' blob: data: https://www.google.com/recaptcha/enterprise.js https://www.gstatic.com/_/mss/boq-one-google/_/ https://www.gstatic.com/og/_/js/ https://apis.google.com/js/api.js https://apis.google.com/js/client.js https://www.googletagmanager.com/gtag/js https://www.google-analytics.com/analytics.js https://www.googletagmanager.com/gtag/destination https://www.gstatic.com/_/mss/boq-recaptcha/_/js/k=boq-recaptcha.RecaptchaChallengePageUi.en_US.AhlAtIpWKzQ.2018.O/ https://apis.google.com/_/scs/abc-static/_/js/ https://www.gstatic.com/recaptcha/releases/;report-uri /recaptcha/challengepage/_/RecaptchaChallengePageUi/cspreport/fine-allowlist
permissions-policy ch-ua-arch=*, ch-ua-bitness=*, ch-ua-full-version=*, ch-ua-full-version-list=*, ch-ua-model=*, ch-ua-wow64=*, ch-ua-form-factors=*, ch-ua-platform=*, ch-ua-platform-version=*
accept-ch Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Form-Factors, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
cross-origin-resource-policy same-site
cross-origin-opener-policy same-origin
reporting-endpoints default="/recaptcha/challengepage/_/RecaptchaChallengePageUi/web-reports?context=eJzjctHikmLw0ZBiaL15jnU6EJcsOs_aBsRdQDwHiA0VLrE6A3GRxBXWFiD-VHWDVaT6Buu3Yl82jhJfNpa3_mxCPBz3V0-9xiZwoP_yMmYlvaT8wvii1OTEgpLkjERdIE8XSOfkpOalpxYkpqfGGxkYmRlYGhrqGZjGFxgAAOsrMFE"
server ESF
x-xss-protection 0
x-frame-options SAMEORIGIN
x-content-type-options nosniff
via 1.1 google
X-GCP-Trace-Id f4d28d5cf24c43ae24bc45f70948e11e
x-colo-gcp PROD-DEL
Alt-Svc h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
Connection close