Información Técnica
| Código de estado HTTP | 200 |
| Versión HTTP | HTTP/1.1 |
| HTTPS | ✔ Disponible |
| Dirección IP | 128.95.160.154 |
| Software del servidor | nginx/1.25.5 |
|
🔒 🟡 Mixed Content (8 recursos HTTP) | La página se sirve por HTTPS pero carga 8 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos. |
|
ℹ 🔵 Falta HSTS | No se ha configurado HTTP Strict Transport Security. Recomendado para sitios HTTPS. |
|
ℹ 🔵 Falta Content Security Policy | No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido. |
|
ℹ 🔵 Sin compresión | El servidor no usa Gzip ni Brotli. Habilita compresión para reducir el ancho de banda. |
Código de estado HTTP 200
Versión HTTP HTTP/1.1
HTTPS ✔ Disponible
Dirección IP 128.95.160.154
Software del servidor nginx/1.25.5
🔒 🟡 Mixed Content (8 recursos HTTP) La página se sirve por HTTPS pero carga 8 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos.
ℹ 🔵 Falta HSTS No se ha configurado HTTP Strict Transport Security. Recomendado para sitios HTTPS.
ℹ 🔵 Falta Content Security Policy No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido.
ℹ 🔵 Sin compresión El servidor no usa Gzip ni Brotli. Habilita compresión para reducir el ancho de banda.
Rendimiento
| Resolución DNS | 1.3 ms |
| Conexión TCP | 145.6 ms |
| Negociación TLS | 152.2 ms |
| Tiempo hasta el primer byte (TTFB) | 816.3 ms |
| Descarga de contenido | 0.1 ms |
| Tiempo total de respuesta | 816.4 ms |
Resolución DNS 1.3 ms
Conexión TCP 145.6 ms
Negociación TLS 152.2 ms
Tiempo hasta el primer byte (TTFB) 816.3 ms
Descarga de contenido 0.1 ms
Tiempo total de respuesta 816.4 ms
Seguridad
| HTTPS | ✔ Activado |
| HSTS | ✘ No configurado |
| CSP | ⚠ No configurado |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Política de Referrer | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Activado
HSTS ✘ No configurado
CSP ⚠ No configurado
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Política de Referrer strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
Comprobación SEO
Título Foldit
Tecnologías Detectadas
| Tecnología | Google Analytics Nginx PHP Matomo |
Tecnología Google Analytics Nginx PHP Matomo
Cabeceras HTTP
| Server
| nginx/1.25.5 |
| Date
| Wed, 19 Aug 2026 23:50:04 GMT |
| Content-Type
| text/html; charset=utf-8 |
| Transfer-Encoding
| chunked |
| Connection
| keep-alive |
| X-Frame-Options
| SAMEORIGIN |
| X-XSS-Protection
| 1; mode=block |
| X-Content-Type-Options
| nosniff |
| X-Download-Options
| noopen |
| X-Permitted-Cross-Domain-Policies
| none |
| Referrer-Policy
| strict-origin-when-cross-origin |
| ETag
| W/"29bb04d3f13f6f1f1516cadb8cf388ee" |
| Cache-Control
| max-age=0, private, must-revalidate |
| X-Request-Id
| 1cc87cd8-e4cb-4fd8-8fca-85a76d6043f2 |
| X-Runtime
| 0.226026 |
Meta Tags
| Csrf-param | authenticity_token |
| Csrf-token | 3GwvsqOs7dBV3EjQxTe4RQa1r1vkv0bkvOM8pgxvuOGeiRxI2O/1cKwHjr3v8g+J3tBrG/pJb67k9s5svXfUjg== |
| Viewport | width=device-width, initial-scale=1 |
Server nginx/1.25.5
Date Wed, 19 Aug 2026 23:50:04 GMT
Content-Type text/html; charset=utf-8
Transfer-Encoding chunked
Connection keep-alive
X-Frame-Options SAMEORIGIN
X-XSS-Protection 1; mode=block
X-Content-Type-Options nosniff
X-Download-Options noopen
X-Permitted-Cross-Domain-Policies none
Referrer-Policy strict-origin-when-cross-origin
ETag W/"29bb04d3f13f6f1f1516cadb8cf388ee"
Cache-Control max-age=0, private, must-revalidate
X-Request-Id 1cc87cd8-e4cb-4fd8-8fca-85a76d6043f2
X-Runtime 0.226026