Información Técnica
| Código de estado HTTP | 200 |
| Versión HTTP | HTTP/1.1 |
| HTTPS | ✔ Disponible |
| Dirección IP | 99.86.109.39 |
| Software del servidor | cloudflare |
| CDN | Cloudflare |
| Compresión | gzip |
|
🔒 🟡 Mixed Content (2 recursos HTTP) | La página se sirve por HTTPS pero carga 2 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos. |
|
ℹ 🔵 Falta Content Security Policy | No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido. |
Código de estado HTTP 200
Versión HTTP HTTP/1.1
HTTPS ✔ Disponible
Dirección IP 99.86.109.39
Software del servidor cloudflare
CDN Cloudflare
Compresión gzip
🔒 🟡 Mixed Content (2 recursos HTTP) La página se sirve por HTTPS pero carga 2 recurso(s) por HTTP. Esto puede bloquearse en navegadores modernos.
ℹ 🔵 Falta Content Security Policy No se ha configurado CSP. Ayuda a prevenir ataques XSS e inyección de contenido.
Cadena de Redirecciones
| # | URL | Código de estado HTTP | Estado |
| 1 | https://ycombinator.com:443 | 301 | HTTP/1.1 301 Moved Permanently |
| 2 | https://www.ycombinator.com/ | 200 | HTTP/2 200 |
#1 URL https://ycombinator.com:443
Código de estado HTTP 301
Estado HTTP/1.1 301 Moved Permanently
#2 URL https://www.ycombinator.com/
Código de estado HTTP 200
Estado HTTP/2 200
Rendimiento
| Resolución DNS | 10.4 ms |
| Conexión TCP | 12 ms |
| Negociación TLS | 15.1 ms |
| Tiempo hasta el primer byte (TTFB) | 279.8 ms |
| Descarga de contenido | 173.4 ms |
| Tiempo total de respuesta | 453.1 ms |
Resolución DNS 10.4 ms
Conexión TCP 12 ms
Negociación TLS 15.1 ms
Tiempo hasta el primer byte (TTFB) 279.8 ms
Descarga de contenido 173.4 ms
Tiempo total de respuesta 453.1 ms
Seguridad
| HTTPS | ✔ Activado |
| HSTS | ✔ max-age=63072000; includeSubDomains |
| CSP | ⚠ No configurado |
| X-Frame-Options | ✔ SAMEORIGIN |
| X-Content-Type-Options | ✔ nosniff |
| Política de Referrer | strict-origin-when-cross-origin |
| HTTP/2 | ⚠ HTTP/1.1 |
HTTPS ✔ Activado
HSTS ✔ max-age=63072000; includeSubDomains
CSP ⚠ No configurado
X-Frame-Options ✔ SAMEORIGIN
X-Content-Type-Options ✔ nosniff
Política de Referrer strict-origin-when-cross-origin
HTTP/2 ⚠ HTTP/1.1
Comprobación SEO
Título Y Combinator
Tecnologías Detectadas
| Tecnología | React Google Analytics Cloudflare |
Tecnología React Google Analytics Cloudflare
Cabeceras HTTP
| Date
| Tue, 28 Jul 2026 18:50:26 GMT |
| Content-type
| text/html; charset=utf-8 |
| X-frame-options
| SAMEORIGIN |
| X-xss-protection
| 1; mode=block |
| X-content-type-options
| nosniff |
| X-download-options
| noopen |
| X-permitted-cross-domain-policies
| none |
| Referrer-policy
| strict-origin-when-cross-origin |
| Cross-origin-opener-policy
| same-origin |
| Vary
| X-Inertia,Accept-Encoding |
| Link
| ; rel=preload; as=style; nopush,; rel=modulepreload; as=script; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush |
| Etag
| W/"a9d37e6da0bb4254cd4f47e28ca90f36" |
| Cache-control
| max-age=0, private, must-revalidate |
| Content-security-policy-report-only
| script-src 'self' https: https://www.google-analytics.com https://cdn.amplitude.com 'unsafe-eval' 'unsafe-inline' data: 'nonce-Hb2ZtSJMo5YCCUpYRs0BqA=='; worker-src blob: data:; report-uri https://us.sentry.io/api/4506690010480640/security/?sentry_key=aab2498373841041d6b48d721aefbdc1&sentry_environment=production&sentry_release=40d1f5e2898feb94847a49519d6ca57ec91ef828 |
| Set-cookie
| _bf_session_key=AV51OsXILrSWO9LdAI6xCmIjYqKtW0fJXa%2FDaaFFJC%2FfEWI1Y%2BkfYpcPwsvGlIJyBG3H06EHvNvDuKkF8ddZKjsKYxOlcO5xknCnlcfYjxyGFVEZnV7TxnlntuuyKNf5xXitVxxH%2BHm%2BERtYwZsnOeo7Vgw%2FDPNWDebhiiky4DVMlMJerxt7iw5WxEvay2b0mER5PZCBwOhjdau%2FUOG9Z560DSM9VN7bffZHHFR1jFeyTjcbBnpnClx5pzpwoDgKVrL8KfFvo%2B10BqlHIO5DjuRAkb6yEfc%3D--YfFGgtiINEBw9%2FXA--A7N7wSIWMQ8abYqhIoN2Tw%3D%3D; path=/; secure; httponly; samesite=lax |
| X-request-id
| 85bc3804-08aa-4ed0-8e77-672c0f15920a |
| X-runtime
| 0.049814 |
| Strict-transport-security
| max-age=63072000; includeSubDomains |
| Content-encoding
| gzip |
| Cf-cache-status
| DYNAMIC |
| Server
| cloudflare |
| Cf-ray
| a22611c9ecf7d4e5-CDG |
Meta Tags
| Csrf-param | authenticity_token |
| Csrf-token | R2PQQu3dRXkrjZQizfLFFsJWuHIZSOVyD2nYisDH_czyLrdgkDfY-zirzjX9K1eD6e9fLjXKFyHKONE0nYCZGw |
Date Tue, 28 Jul 2026 18:50:26 GMT
Content-type text/html; charset=utf-8
X-frame-options SAMEORIGIN
X-xss-protection 1; mode=block
X-content-type-options nosniff
X-download-options noopen
X-permitted-cross-domain-policies none
Referrer-policy strict-origin-when-cross-origin
Cross-origin-opener-policy same-origin
Vary X-Inertia,Accept-Encoding
Link ; rel=preload; as=style; nopush,; rel=modulepreload; as=script; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush,; rel=preload; as=style; crossorigin=; nopush
Etag W/"a9d37e6da0bb4254cd4f47e28ca90f36"
Cache-control max-age=0, private, must-revalidate
Content-security-policy-report-only script-src 'self' https: https://www.google-analytics.com https://cdn.amplitude.com 'unsafe-eval' 'unsafe-inline' data: 'nonce-Hb2ZtSJMo5YCCUpYRs0BqA=='; worker-src blob: data:; report-uri https://us.sentry.io/api/4506690010480640/security/?sentry_key=aab2498373841041d6b48d721aefbdc1&sentry_environment=production&sentry_release=40d1f5e2898feb94847a49519d6ca57ec91ef828
Set-cookie _bf_session_key=AV51OsXILrSWO9LdAI6xCmIjYqKtW0fJXa%2FDaaFFJC%2FfEWI1Y%2BkfYpcPwsvGlIJyBG3H06EHvNvDuKkF8ddZKjsKYxOlcO5xknCnlcfYjxyGFVEZnV7TxnlntuuyKNf5xXitVxxH%2BHm%2BERtYwZsnOeo7Vgw%2FDPNWDebhiiky4DVMlMJerxt7iw5WxEvay2b0mER5PZCBwOhjdau%2FUOG9Z560DSM9VN7bffZHHFR1jFeyTjcbBnpnClx5pzpwoDgKVrL8KfFvo%2B10BqlHIO5DjuRAkb6yEfc%3D--YfFGgtiINEBw9%2FXA--A7N7wSIWMQ8abYqhIoN2Tw%3D%3D; path=/; secure; httponly; samesite=lax
X-request-id 85bc3804-08aa-4ed0-8e77-672c0f15920a
X-runtime 0.049814
Strict-transport-security max-age=63072000; includeSubDomains
Content-encoding gzip
Cf-cache-status DYNAMIC
Server cloudflare
Cf-ray a22611c9ecf7d4e5-CDG