Información Técnica
| Código de estado HTTP | 200 |
| Versión HTTP | HTTP/1.1 |
| HTTPS | ✔ Disponible |
| Dirección IP | 99.86.109.94 |
| Software del servidor | cloudflare |
| CDN | Cloudflare |
| Compresión | gzip |
|
🔒 🟡 Mixed Content (2 recursos HTTP) | La página se sirve por HTTPS pero carga 2 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos. |
|
ℹ 🔵 Falta Content Security Policy | No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido. |
Código de estado HTTP 200
Versión HTTP HTTP/1.1
HTTPS ✔ Disponible
Dirección IP 99.86.109.94
Software del servidor cloudflare
CDN Cloudflare
Compresión gzip
🔒 🟡 Mixed Content (2 recursos HTTP) La página se sirve por HTTPS pero carga 2 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos.
ℹ 🔵 Falta Content Security Policy No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido.
Cadena de Redirecciones
| # | URL | Código de estado HTTP | Estado |
| 1 | https://ycombinator.com:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.ycombinator.com/ | 200 | HTTP/2 200 |
#1 URL https://ycombinator.com:443
Código de estado HTTP 301
Estado HTTP/1.1 301 Moved Permanently
#2 URL https://www.ycombinator.com/
Código de estado HTTP 200
Estado HTTP/2 200
Rendimiento
| Resolución DNS | 17.7 ms |
| Conexión TCP | 19 ms |
| Negociación TLS | 9.8 ms |
| Tiempo hasta el primer byte (TTFB) | 290 ms |
| Descarga de contenido | 165 ms |
| Tiempo total de respuesta | 455 ms |
Resolución DNS 17.7 ms
Conexión TCP 19 ms
Negociación TLS 9.8 ms
Tiempo hasta el primer byte (TTFB) 290 ms
Descarga de contenido 165 ms
Tiempo total de respuesta 455 ms
Seguridad
| HTTPS | ✔ Activado |
| HSTS | ✔ max-age=63072000; includeSubDomains |
| CSP | ⚠ No configurado |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Política de Referrer | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Activado
HSTS ✔ max-age=63072000; includeSubDomains
CSP ⚠ No configurado
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Política de Referrer strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
Comprobación SEO
Título Y Combinator
Tecnologías Detectadas
| Tecnología | React Google Analytics Cloudflare |
Tecnología React Google Analytics Cloudflare
Cabeceras HTTP
| Date
| Sun, 30 Aug 2026 23:32:43 GMT |
| Content-type
| text/html; charset=utf-8 |
| X-frame-options
| SAMEORIGIN |
| X-xss-protection
| 1; mode=block |
| X-content-type-options
| nosniff |
| X-download-options
| noopen |
| X-permitted-cross-domain-policies
| none |
| Referrer-policy
| strict-origin-when-cross-origin |
| Cross-origin-opener-policy
| same-origin |
| Vary
| X-Inertia,Accept-Encoding |
| Link
| ; rel=preload; as=style; nopush,; rel=modulepreload; as=script; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush |
| Etag
| W/"ce932f60a87ef12fe8879a58f5d6410e" |
| Cache-control
| max-age=0, private, must-revalidate |
| Content-security-policy-report-only
| script-src 'self' https: https://www.google-analytics.com https://cdn.amplitude.com 'unsafe-eval' 'unsafe-inline' data: 'nonce-J7ltf+NFeQW6XXT0h6krKA=='; worker-src blob: data:; report-uri https://us.sentry.io/api/4506690010480640/security/?sentry_key=aab2498373841041d6b48d721aefbdc1&sentry_environment=production&sentry_release=f0ec3e8ef3c363d26385a181ef8fc7791e5f266a |
| Set-cookie
| _bf_session_key=B1KZ7CvqIEt0uWLRJEe%2F9AtOhJVwbCEjDM%2FNmO14uLZlga%2FlENUt8I%2BOAi%2Fhuh3AZVjy%2BqO6NanLKiOc%2BqI2bgeY4sAHJxuCjzyEEpXP1LTXdwJcRI1KxPO0LLG%2BZOMCNnPNOUIhq1hiEmikIyL%2FA3MwwBlbJ7Myw7auqoEtX5h7RMNCgRhrPi0aFaOokY0ITYuQW2jyBEPKvyIddzkUo89Rcpz1l860cuhkPwjb12ZQ1rM%2Fmahvs5g%2FYUnTSANRQmU7m6v4qkGc1DStRCReL%2BJ%2BYkLNr%2F4%3D--UHMgs5u4LFd3LAv0--zHCTvIYCe%2FtOFekCUgswVA%3D%3D; path=/; secure; httponly; samesite=lax |
| X-request-id
| 2aed4ef9-4057-4e0e-be04-3fe551aa2439 |
| X-runtime
| 0.067770 |
| Strict-transport-security
| max-age=63072000; includeSubDomains |
| Content-encoding
| gzip |
| Cf-cache-status
| DYNAMIC |
| Server
| cloudflare |
| Cf-ray
| a33798abbf7503fb-CDG |
Meta Tags
| Csrf-param | authenticity_token |
| Csrf-token | RROStr5ZW59Z7calk3gKiLO84epWwkbh30D7pY128b4QaVDr76Kx27jKImLBqHKgG5Y0SeES2Khg8q2bPsGTFQ |
Date Sun, 30 Aug 2026 23:32:43 GMT
Content-type text/html; charset=utf-8
X-frame-options SAMEORIGIN
X-xss-protection 1; mode=block
X-content-type-options nosniff
X-download-options noopen
X-permitted-cross-domain-policies none
Referrer-policy strict-origin-when-cross-origin
Cross-origin-opener-policy same-origin
Vary X-Inertia,Accept-Encoding
Link ; rel=preload; as=style; nopush,; rel=modulepreload; as=script; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush
Etag W/"ce932f60a87ef12fe8879a58f5d6410e"
Cache-control max-age=0, private, must-revalidate
Content-security-policy-report-only script-src 'self' https: https://www.google-analytics.com https://cdn.amplitude.com 'unsafe-eval' 'unsafe-inline' data: 'nonce-J7ltf+NFeQW6XXT0h6krKA=='; worker-src blob: data:; report-uri https://us.sentry.io/api/4506690010480640/security/?sentry_key=aab2498373841041d6b48d721aefbdc1&sentry_environment=production&sentry_release=f0ec3e8ef3c363d26385a181ef8fc7791e5f266a
Set-cookie _bf_session_key=B1KZ7CvqIEt0uWLRJEe%2F9AtOhJVwbCEjDM%2FNmO14uLZlga%2FlENUt8I%2BOAi%2Fhuh3AZVjy%2BqO6NanLKiOc%2BqI2bgeY4sAHJxuCjzyEEpXP1LTXdwJcRI1KxPO0LLG%2BZOMCNnPNOUIhq1hiEmikIyL%2FA3MwwBlbJ7Myw7auqoEtX5h7RMNCgRhrPi0aFaOokY0ITYuQW2jyBEPKvyIddzkUo89Rcpz1l860cuhkPwjb12ZQ1rM%2Fmahvs5g%2FYUnTSANRQmU7m6v4qkGc1DStRCReL%2BJ%2BYkLNr%2F4%3D--UHMgs5u4LFd3LAv0--zHCTvIYCe%2FtOFekCUgswVA%3D%3D; path=/; secure; httponly; samesite=lax
X-request-id 2aed4ef9-4057-4e0e-be04-3fe551aa2439
X-runtime 0.067770
Strict-transport-security max-age=63072000; includeSubDomains
Content-encoding gzip
Cf-cache-status DYNAMIC
Server cloudflare
Cf-ray a33798abbf7503fb-CDG