HTTP Response Headers Inspector

Check HTTP status codes (200, 301, 404), server technologies, compression, and security headers (CSP, HSTS).

📑

HTTP Response for netflix.com

HTTP/1.1 405 Method Not Allowed
Header Field Value
Status HTTP/1.1 405 Method Not Allowed
server envoy
x-frame-options DENY
allow GET, OPTIONS, POST
date Tue, 06 Oct 2026 22:09:55 GMT
x-envoy-upstream-service-time 1
x-b3-traceid 6ac571b391bded11a1ba506db195a3f3
x-request-id c6a5922b-e1ca-4735-981d-50fb9a8c80be
x-envoy-decorator-operation lo_svc
Via 1.1 i-02414a786d270e74b (eu-west-1)
X-Xss-Protection 1; mode=block; report=https://www.netflix.com/ichnaea/log/freeform/xssreport
X-Content-Type-Options nosniff
Strict-Transport-Security max-age=31536000; includeSubDomains
X-Originating-URL http://netflix.com/
Edge-Control no-cache, no-store
Cache-Control no-cache, no-store
Set-Cookie nfvdid=BQFmAAEBEMA7Lgppb_1ER378AAZnVzxAisgTjLrJPRuCOUNCDIlaIcWnG-g-qJX5pqLjQhfgOOfLuOCf05SkOwTiAmZ5fA0bjzwx8MxJbfE3ckWNRvJMuA%3D%3D; Domain=.netflix.com; Path=/; Max-Age=31536000, SecureNetflixId=v%3D3%26mac%3DAQEAEQABABR3ksgyYBHbTYKsdZTGDPZ525oYscr4mig.%26dt%3D1791324595316; Domain=.netflix.com; Expires=Wed, 6 Oct 2027 22:09:55 GMT; Path=/; HttpOnly; Secure; SameSite=Strict, NetflixId=v%3D3%26ct%3DBgjHlOvcAxLAAStPu1CSRLeD3Jz71Q75ZwoIt4E1tKg_mLWT3XQg9FhvRBJZsN2YtWwbkMNT060SyH64picaN-y8k7liehyfsNuLuxKlfVI0ayJJg-GqZzfaOkXS-TF88VSRrYhix6BJR3WtNKquRDhVgoepmuIx_3U3wOgcj9I3swtTd7Rcmihz7pYyV3Iq8nwHtO_JPNADhKJCwVe3WWsrrlycBDxLF9EeVZsyiEl3nU20iiK5Eoax58rnezWDQa9P5JwVrPU7ohgGIg4KDFyBHeQQuNXi0OE3-w..; Domain=.netflix.com; Expires=Wed, 6 Oct 2027 22:09:55 GMT; Path=/; HttpOnly; Secure; SameSite=Lax
x-netflix-cookieandmsl.profileguid.match NA
x-netflix-headerandcookie.profileguid.match NA
x-netflix-headerandmsl.profileguid.match NA
X-Netflix.nfstatus 1_1
X-Netflix.proxy.execution-time 486
transfer-encoding chunked
Connection close