Search 93+ free tools… (e.g. json, vpn, password) ⌘K
Link Tools Dereferer Hide Referrer Link URL Shortener Affiliate Cloaker PayPal Links PayPal DonationPayPal Links Privacy Tools Password Generator Cloudflare Resolver My Referrer Torrent Tools Magnet → Torrent Torrent → Magnet Torrent Editor Pirate Bay Proxies Movierulz Proxies ExtraTorrent Proxies Dev Tools Base64 Encoder Hash Generator HTTP Headers Disposable Email Checker Company Blog About Us Contact Anonymize Free
Privacy Tool

HTTP Headers Checker

See all HTTP headers your browser sends with every request — and check response headers from any website.

Your Browser's Request Headers

These 15 headers are sent with every page you visit

Accept info
*/*
Accept-Encoding info
gzip, br
Cdn-Loop
cloudflare; loops=1
Cf-Connecting-Ip
216.73.216.91
Cf-Ipcountry
US
Cf-Ray
a43c6e4849654af4-CMH
Cf-Visitor
{"scheme":"https"}
Connection
upgrade
Host
anonymiz.com
Https
on
Remote-Host
104.23.243.254
Upgrade
close
User-Agent leak
Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)
X-Forwarded-For info
216.73.216.91, 104.23.243.254
X-Forwarded-Proto
https

Check Response Headers of Any Website

We fetch the response headers from this URL and display them — useful for security audits
🛡️
Your IP address and DNS queries are visible to your ISP. Protect your privacy with a trusted VPN — tested and recommended by Anonymiz.
See Recommended VPNs →

HTTP Response Headers Explained

When a browser requests a web page, the server sends back HTTP headers alongside the actual page content — metadata describing things like the content type, caching rules, server software, and security policies that govern how the browser should handle the response.

Common Security Headers

Headers like Strict-Transport-Security force browsers to always use HTTPS for a domain, Content-Security-Policy restricts which scripts and resources a page can load to prevent injection attacks, and X-Frame-Options prevents a page from being embedded in a hidden iframe on another site. Their presence, or absence, is a quick signal of a site’s security posture.

How to Check Headers

Enter any URL and this tool fetches the raw response headers directly from the server, letting you inspect security configuration, caching behavior, or server software without needing browser developer tools or a command-line request.

Why HTTP headers matter

Every response from a web server begins with headers: short name and value lines that tell the browser how to handle what follows. Visitors never see them, but they control caching, redirects, compression, cookies and security rules. When a page behaves oddly, such as an old version that keeps showing, a redirect that loops, or a file that opens instead of downloading, the headers usually explain why.

Headers worth checking first

Security headers

Strict-Transport-Security, Content-Security-Policy, X-Content-Type-Options, X-Frame-Options and Referrer-Policy protect visitors from HTTPS downgrades, injected scripts, content-type tricks, clickjacking and leaked referrer URLs. The security headers checker grades these for you.

If a header you set is missing

What your server sends is not always what arrives. CDNs, caching plugins and firewalls can add, strip or rewrite headers on the way out. If a header you configured does not appear here, something between your server and the internet is removing or replacing it, and that layer is where to fix it.

Related Tools

🏷️
Meta Tag Checker
Check OG tags and social preview
🤖
Robots.txt Generator
Generate robots.txt files
📋
GDPR Compliance Check
Check site GDPR compliance
🔍
WHOIS Lookup
Look up domain registration info
🌐
DNS Lookup
Check DNS records for any domain
📋
JSON Formatter
Format and validate JSON

Frequently Asked Questions

What are HTTP response headers?
HTTP headers are metadata sent by servers with each response. They control caching, security policies, content type and many browser behaviours.
What security headers should I have?
Key security headers include Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Strict-Transport-Security and Referrer-Policy.
Why check HTTP headers?
To audit server configuration, debug caching issues, verify security headers, and check CORS policies.
Done!