Security Report Summary
R
Redirect: Click here to follow the redirect to https://www.metrowebsites.com/domains/quotenearme-com/.
Site: https://www.metrowebsites.com/domains/quotenearme-com
IP Address: 212.71.124.188
Report Time: 12 Sep 2026 08:22:18 UTC
Headers:
  • Strict-Transport-Security
  • Content-Security-Policy
  • X-Frame-Options
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policy
Advanced:
Perform a deeper security analysis of your website and APIs:
Missing Headers
Content-Security-PolicyContent Security Policy is an effective measure to protect your site from XSS attacks. By whitelisting sources of approved content, you can prevent the browser from loading malicious assets.
X-Frame-OptionsX-Frame-Options tells the browser whether you want to allow your site to be framed or not. By preventing a browser from framing your site you can defend against attacks like clickjacking. Recommended value "X-Frame-Options: SAMEORIGIN".
X-Content-Type-OptionsX-Content-Type-Options stops a browser from trying to MIME-sniff the content type and forces it to stick with the declared content-type. The only valid value for this header is "X-Content-Type-Options: nosniff".
Referrer-PolicyReferrer Policy is a new header that allows a site to control how much information the browser includes with navigations away from a document and should be set by all sites.
Permissions-PolicyPermissions Policy is a new header that allows a site to control which features and APIs can be used in the browser.
Warnings
Response is not HTMLThe content-type of the response does not indicate HTML. Not all headers, and therefore the score, may be appropriate.
Raw Headers
HTTP/2307
content-typetext/plain
location/domains/quotenearme-com/
ic-certificateexpressiondefault_certification(ValidationArgs{certification: Certification{no_request_certification: Empty{}, response_certification: ResponseCertification{certified_response_headers: ResponseHeaderList{headers: ["content-type", "content-type", "location"]}}}})
ic-certificateversion=2, certificate=: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:, tree=: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:, expr_path=:2dn3hGlodHRwX2V4cHJnZG9tYWluc29xdW90ZW5lYXJtZS1jb21jPCQ+:
access-control-expose-headersaccept-ranges, content-length, content-range, x-request-id, x-ic-canister-id
access-control-allow-origin*
varyorigin, access-control-request-method, access-control-request-headers
content-length0
x-ic-canister-idh5ahc-cyaaa-aaaaj-qr2vq-cai
strict-transport-securitymax-age=31536000; includeSubDomains
x-request-id01a094b5-ce59-7fb2-9565-6b2dffb42164
dateSat, 12 Sep 2026 08:22:18 GMT
Upcoming Headers
Cross-Origin-Embedder-PolicyCross-Origin Embedder Policy allows a site to prevent assets being loaded that do not grant permission to load them via CORS or CORP.
Cross-Origin-Opener-PolicyCross-Origin Opener Policy allows a site to opt-in to Cross-Origin Isolation in the browser.
Cross-Origin-Resource-PolicyCross-Origin Resource Policy allows a resource owner to specify who can load the resource.
Additional Information
access-control-allow-originThis is a very lax CORS policy. Such a policy should only be used on a public CDN.
strict-transport-securityHTTP Strict Transport Security is an excellent feature to support on your site and strengthens your implementation of TLS by getting the User Agent to enforce the use of HTTPS.