HTTP Headers

Response headers and redirect chain for a URL.

Response headers for https://nextdc.com

(status) HTTP/1.1 301 Moved Permanently
Date Sun, 07 Jun 2026 22:44:39 GMT | Sun, 07 Jun 2026 22:44:39 GMT
Connection close | close
Location https://www.nextdc.com/
set-cookie __cf_bm=BvpYeqg02uhlP3f1jr7HPw_BTl8xMeh1hikGPrDAQIE-1780872279.5183399-1.0.1.1-usemneiJmcB76TVTCbCrkgIxn71k4x_Ra9Wu6zux6touQvpQa_o8bvHUyGzap3DTlXxeJZtvuIbU6U7HTUEi6hsw1PajW0h6u0XOrUiak500AdmOJ9S9_zApN2uhH.Dh; HttpOnly; SameSite=None; Secure; Path=/; Domain=nextdc.com; Expires=Sun, 07 Jun 2026 23:14:39 GMT | _cfuvid=BzmQfkN1PbVtNdFREHJu1fV4AFUpjiM_xL1.nSkptR8-1780872279.5183399-1.0.1.1-7GCYrKkm_gFf2wYvVtVYHihlIQjVBvL0WTZ3HdCuaqk; HttpOnly; SameSite=None; Secure; Path=/; Domain=nextdc.com | __cf_bm=SHT.ivW9NWClpZtEx4nIAN4CmGgG0OuRRWeH0bq33nc-1780872279.7066562-1.0.1.1-BtCDE3MpMsK.HYjCgY9l9Vnic6vLWJT0F0W3r1TecvIG1k0GyF2YYh9wzWW063l.sUALwBVV6TFf5DipU7oHze93oeK9SdDb5MTHRnyMPI1YF4l.BEiUs6iSZG.KppUq; HttpOnly; SameSite=None; Secure; Path=/; Domain=www.nextdc.com; Expires=Sun, 07 Jun 2026 23:14:39 GMT | _cfuvid=1APDnEQO2zIyUVIRonvDX5Eue249WUCIQhh.3zPzfqs-1780872279.7066562-1.0.1.1-2D1yJw.p1CtUbYOLP.I30QHfsFmjCzcbFZ5I0FrLY30; HttpOnly; SameSite=None; Secure; Path=/; Domain=www.nextdc.com
Cache-Control s-maxage=3600,max-age=120 | s-maxage=36000, max-age=5
Strict-Transport-Security max-age=31536000 | max-age=31536000
Content-Security-Policy upgrade-insecure-requests | upgrade-insecure-requests
x-hs-cfworker-meta {"resolver":"DomainRedirectResolver"} | {"contentType":"SITE_PAGE","resolver":"PreRenderedContentResolver"}
x-hs-portal-id 23251048 | 23251048
Vary accept-encoding | accept-encoding
Report-To {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=U%2BLvFUn55KXU%2BLoa20ktVgbeccB90ozWDeKz%2BHKV4xzlpQJ9lYG7nhMJxgyPasw0UZK2%2B65gJ4DKPvYj6leiNsX0gpo9ZwTm%2FiisVEie7piM9MxEWehBL%2B9p7Uk%3D"}]} | {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=asMQ15HojWi%2FFQQ2AlfSxIk51Y8FNeGanyLdqv3vf3VuEJC59FfqM4QOQWUrlTwu%2F4cxSsnjRxvY0gaMTXGGRquTuRUSwFJaucPtk9%2FzluSi%2F6b5%2Fu7HAEReapsSrEGk"}]}
Nel {"report_to":"cf-nel","success_fraction":0.01,"max_age":604800} | {"report_to":"cf-nel","success_fraction":0.01,"max_age":604800}
Server cloudflare | cloudflare
CF-RAY a0832ec2ff4e93d7-LHR | a0832ec429cb005f-LHR
alt-svc h3=":443"; ma=86400 | h3=":443"; ma=86400
(status) HTTP/1.1 200 OK
Content-Type text/html; charset=UTF-8
Last-Modified Sun, 07 Jun 2026 03:24:18 GMT
Link <https://www.nextdc.com/hubfs/hub_generated/template_assets/1/98423672416/1780533566941/template_animate.min.css>; rel=preload; as=style,<https://www.nextdc.com/hubfs/hub_generated/template_assets/1/98423240963/1780533553166/template_wow.min.js>; rel=preload; as=script,<https://www.nextdc.com/hubfs/hub_generated/template_assets/1/100712059004/1780533556468/template_select2.min.css>; rel=preload; as=style,<https://www.nextdc.com/hubfs/hub_generated/template_assets/1/97917012806/1780533585066/template_main.min.css>; rel=preload; as=style,<https://www.nextdc.com/hubfs/hub_generated/template_assets/1/97918079407/1780533557388/template_child.css>; rel=preload; as=style,<https://www.nextdc.com/hubfs/hub_generated/template_assets/1/98050333044/1780533551629/template_owl.carousel.min.css>; rel=preload; as=style,<https://www.nextdc.com/hubfs/hub_generated/module_assets/1/97920086330/1741829295386/module_Homepage_Hero.min.css>; rel=preload; as=style
Edge-Cache-Tag CT-97921320073,CG-23251048,P-23251048,CW-103918083745,CW-105719176814,CW-106088427562,CW-146883233181,CW-173278763907,CW-185697896334,CW-186239191681,CW-97920086330,CW-97923094955,CW-97949337197,CW-98045526634,CW-98193448614,CW-98200506204,CW-98968228219,CW-99099807925,DB-108960516,DB-5803169,E-100712059004,E-100712059198,E-104384876710,E-104384876711,E-104731471965,E-185733882925,E-186239184568,E-97916791348,E-97917012806,E-97917324555,E-97917770346,E-97918079407,E-97921381012,E-98050333044,E-98052287284,E-98423240963,E-98423672416,E-98776792930,RA-102537043047,RA-97917768110,RA-97921012538,PGS-ALL,SW-4,B-98198392363,B-98201790783,GC-186236985466,GC-97921320868,TS-97918052885
Referrer-Policy no-referrer-when-downgrade
X-HS-CF-Cache-Status HIT
X-HS-Cache-Config BrowserCache-0s-EdgeCache-0s
X-HS-Cache-Control s-maxage=36000, max-age=0
X-HS-Content-Id 97921320073
X-HS-Hub-Id 23251048
X-Hs-Prerendered Sun, 07 Jun 2026 03:24:18 GMT

About HTTP Headers

This tool sends a HEAD request to a URL, follows up to five redirects, and returns every response header from every hop in the chain. You see what content type is served, how caching is configured, which cookies the site sets, what server software identifies itself, and any custom headers. The HEAD method avoids downloading the body, so even large responses return in milliseconds.

When to use it

Check headers when a browser shows an unexpected redirect, since the chain reveals exactly which URLs the server visits. Use it to verify a CDN is in front of your origin by looking for CF-Ray, X-Served-By, or X-Cache headers. Web developers use it to confirm cache headers like Cache-Control and ETag are configured correctly for static assets, which directly affects page load performance.

How to read the results

Status codes 200 through 299 are success, 301 and 308 are permanent redirects, 302 and 307 are temporary. Cache-Control directives like max-age=3600 set browser cache duration. Strict-Transport-Security indicates HSTS is active. Server and X-Powered-By headers often reveal the stack, though security-conscious sites strip them. Set-Cookie lines show session and tracking cookies with their flags.

Frequently asked questions

Why are some headers shown as arrays?

When a server sends the same header name multiple times, get_headers returns them as an array of values. This happens most often with Set-Cookie, Link, and Vary headers, where multiple distinct values are valid in one response.

What does a 200 status mean if my page is broken?

A 200 response only means the server returned a response successfully. The body may still contain an error page rendered by the application. To check the actual page content, fetch the body, not just the headers.

How is HEAD different from GET?

HEAD requests return only the headers, no body. The server processes the request identically to GET but truncates the response. Some applications handle HEAD poorly and return 405 errors, in which case the result will show the error.

Why is the Server header missing?

Modern web servers and reverse proxies often hide or rewrite Server headers as a security measure, since the version disclosed could reveal known vulnerabilities. Nginx, Apache, and Cloudflare all support stripping the header in their configurations.

Who Is Online

In total there are 5 users online: 0 registered, 3 guests and 2 bots.

Bots: Bingbot Other Bot

Users active in the past 15 minutes. Total registered members: 340