Summary
A Concise Overview of the scan result of url https://luckyfriendmm.com/
- Document
- HTML
- 1
- StyleSheets
- 2
- Scripts
- 10
- Font
- 2
- Images
- 8
- Links
- 5
- JavaScript Variables
- 24
- Console log messages
- 0
- Network
- Requests
- 23
- Bytes Transferred
- 8.41MB
- Bytes Total
- 9.23MB
- DNS Record
- A Record
- 1
- Technology
- Databases
- 1
- Development
- 1
- UI frameworks
- 1
- Security
- 1
- Miscellaneous
- 1
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|---|
| https://maps.app.goo.gl/e1Vm6xsvmSwWRUga8 | No.118, 101th Street, Mingalar Taung Nyunt, Yangon |
| https://www.royalx.net/price-calculator | Royal Express destinations |
| https://www.royalx.net/last-mile-delivery | Royal Express COD service |
| https://service.ninjavan-mm.co/api/v1/u/shared/division/get-all | Ninja Van live locations |
| https://www.ninjavan.co/en-mm/services/all-services | Ninja Van COD service |
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Security | ||
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| Miscellaneous | ||
HTTP/3 | HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web. | Type: headers Name: alt-svc Regex: h3 |
| Databases | ||
Firebase | Firebase is a Google-backed application development software that enables developers to develop iOS, Android and Web apps. | Type: headers Name: vary Regex: x-fh-requested-host |
| Development | ||
Firebase | Firebase is a Google-backed application development software that enables developers to develop iOS, Android and Web apps. | Type: headers Name: vary Regex: x-fh-requested-host |
| UI frameworks | ||
Bootstrap | Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components. | Type: scriptSrc Regex: bootstrap(?:[^>]{0,250}?([0-9a-fA-F]{7,40}|[\d]{1,250}(?:.[\d]{1,250}(?:.[\d]{1,250})?)?)|)[^>]{0,250}?(?:\.min)?\.js |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 1 msGood
- requestTime
- 6 msGood
- dom
- 845 msPoor
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | luckyfriendmm.com | 199.36.158.100 | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
luckyfriendmm.com | 8/30/2026 | 8/31/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| Accept-Ranges | bytes |
| Cache-Control | no-cache, max-age=0, must-revalidate |
| Connection | keep-alive |
| Content-Encoding | br |
| Content-Security-Policy | default-src 'self'; base-uri 'self'; object-src 'none'; frame-ancestors 'none'; form-action 'self'; script-src 'self' https://www.gstatic.com; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self'; connect-src 'self' https://*.googleapis.com https://*.firebaseio.com wss://*.firebaseio.com; frame-src 'self' https://lf-1411991.firebaseapp.com; manifest-src 'self'; worker-src 'self'; upgrade-insecure-requests |
| Content-Type | text/html; charset=utf-8 |
| Date | Mon, 31 Aug 2026 04:25:23 GMT |
| Etag | "bde2d43a5e39fd7a0b124adde65c4645d18823b2798ac54c9d3e151b5463cdca-br" |
| Last-Modified | Sat, 29 Aug 2026 06:14:00 GMT |
| Permissions-Policy | camera=(), microphone=(), geolocation=(), payment=(), usb=() |
| Referrer-Policy | strict-origin-when-cross-origin |
| Strict-Transport-Security | max-age=31556926 |
| Vary | x-fh-requested-host, accept-encoding |
| X-Cache | MISS |
| X-Cache-Hits | 0 |
| X-Content-Type-Options | nosniff |
| X-Frame-Options | DENY |
| X-Served-By | cache-bfi-krnt7300100-BFI |
| X-Timer | S1788150323.498845,VS0,VE93 |
| alt-svc | h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 |
| transfer-encoding | chunked |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|