Información Técnica
| Código de estado HTTP | 403 |
| Versión HTTP | HTTP/1.1 |
| HTTPS | ✔ Disponible |
| Dirección IP | 104.18.38.31 |
| Software del servidor | cloudflare |
| CDN | Cloudflare |
| Compresión | gzip |
|
🚫 🟡 HTTP 403 Error | El servidor devolvió un error 403. Revisa la configuración de acceso. |
|
ℹ 🔵 Falta Content Security Policy | No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido. |
Código de estado HTTP 403
Versión HTTP HTTP/1.1
HTTPS ✔ Disponible
Dirección IP 104.18.38.31
Software del servidor cloudflare
CDN Cloudflare
Compresión gzip
🚫 🟡 HTTP 403 Error El servidor devolvió un error 403. Revisa la configuración de acceso.
ℹ 🔵 Falta Content Security Policy No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido.
Rendimiento
| Resolución DNS | 5.2 ms |
| Conexión TCP | 7 ms |
| Negociación TLS | 7.4 ms |
| Tiempo hasta el primer byte (TTFB) | 50.8 ms |
| Descarga de contenido | 7.6 ms |
| Tiempo total de respuesta | 58.4 ms |
Resolución DNS 5.2 ms
Conexión TCP 7 ms
Negociación TLS 7.4 ms
Tiempo hasta el primer byte (TTFB) 50.8 ms
Descarga de contenido 7.6 ms
Tiempo total de respuesta 58.4 ms
Seguridad
| HTTPS | ✔ Activado |
| HSTS | ✔ max-age=31536000; includeSubDomains |
| CSP | ⚠ No configurado |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Política de Referrer | same-origin |
| Política de Permisos | ✔ Configurado |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Activado
HSTS ✔ max-age=31536000; includeSubDomains
CSP ⚠ No configurado
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Política de Referrer same-origin
Política de Permisos ✔ Configurado
HTTP/2 ⚠ HTTP/1.1
Comprobación SEO
Título Welcome
Tecnologías Detectadas
| Tecnología | Shopify Google Analytics Cloudflare |
Tecnología Shopify Google Analytics Cloudflare
Cabeceras HTTP
| Date | Thu, 20 Aug 2026 08:50:17 GMT |
| Content-type | text/html; charset=UTF-8 |
| Accept-ch | Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA |
| Cf-mitigated | challenge |
| X-frame-options | SAMEORIGIN |
| Server | cloudflare |
| Critical-ch | Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA |
| Cross-origin-embedder-policy | require-corp |
| Cross-origin-opener-policy | same-origin |
| Cross-origin-resource-policy | same-origin |
| Origin-agent-cluster | ?1 |
| Permissions-policy | accelerometer=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),magnetometer=(),microphone=(),payment=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),sync-xhr=(),usb=(),xr-spatial-tracking=* |
| Referrer-policy | same-origin |
| Server-timing | chlray;desc="a2e0264d2b4411f4" |
| X-content-type-options | nosniff |
| Strict-transport-security | max-age=31536000; includeSubDomains |
| Vary | accept-encoding |
| Set-cookie | __cf_bm=DPhmJ4WnxKj0uKv2lUCB6V_rS_RNhIY7UOpCFqDFt70-1787215817.7873368-1.0.1.1-ie0vDxMp1EYw65wkUsqQMk3Qldh0q8pvLkUuvLhbV_WMZl8dIQoBzxNlMXCY8hAl1lJRODyBlQLZDP7lM.74foBuyk25XRtDaW2MV_Ouxtx_XezeA1kBVHwGlEmGlyWe; HttpOnly; SameSite=None; Secure; Path=/; Domain=sofi.com; Expires=Thu, 20 Aug 2026 09:20:17 GMT |
| Report-to | {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=YpRGGKLo4Vv%2FB2kQ86QBl5XDD72RFGPjRS%2BzNSMqlGZMKwvcTtKxfUHgItMvwpYrxHM9O9jiUUB%2FFDIdZyRU81bP97trYj4n0R5hdAoop%2BRi5EDl%2FiQ3EL0n"}]} |
| Nel | {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800} |
| Content-encoding | gzip |
| Cf-ray | a2e0264d2b4411f4-CDG |
Meta Tags
| Content-Type | text/html; charset=UTF-8 |
| Viewport | width=device-width, initial-scale=1.0, shrink-to-fit=no |
| Refresh | 360 |
Date Thu, 20 Aug 2026 08:50:17 GMT
Content-type text/html; charset=UTF-8
Accept-ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
Cf-mitigated challenge
X-frame-options SAMEORIGIN
Server cloudflare
Critical-ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
Cross-origin-embedder-policy require-corp
Cross-origin-opener-policy same-origin
Cross-origin-resource-policy same-origin
Origin-agent-cluster ?1
Permissions-policy accelerometer=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),magnetometer=(),microphone=(),payment=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),sync-xhr=(),usb=(),xr-spatial-tracking=*
Referrer-policy same-origin
Server-timing chlray;desc="a2e0264d2b4411f4"
X-content-type-options nosniff
Strict-transport-security max-age=31536000; includeSubDomains
Vary accept-encoding
Set-cookie __cf_bm=DPhmJ4WnxKj0uKv2lUCB6V_rS_RNhIY7UOpCFqDFt70-1787215817.7873368-1.0.1.1-ie0vDxMp1EYw65wkUsqQMk3Qldh0q8pvLkUuvLhbV_WMZl8dIQoBzxNlMXCY8hAl1lJRODyBlQLZDP7lM.74foBuyk25XRtDaW2MV_Ouxtx_XezeA1kBVHwGlEmGlyWe; HttpOnly; SameSite=None; Secure; Path=/; Domain=sofi.com; Expires=Thu, 20 Aug 2026 09:20:17 GMT
Report-to {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=YpRGGKLo4Vv%2FB2kQ86QBl5XDD72RFGPjRS%2BzNSMqlGZMKwvcTtKxfUHgItMvwpYrxHM9O9jiUUB%2FFDIdZyRU81bP97trYj4n0R5hdAoop%2BRi5EDl%2FiQ3EL0n"}]}
Nel {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Content-encoding gzip
Cf-ray a2e0264d2b4411f4-CDG