Privacy audit

Exactly what this server saw when your browser fetched this page. Nothing is logged or sent elsewhere — close the tab and the data is gone.

From the outside

IP address216.73.217.120
Reverse DNS(no PTR record)
HTTP protocolHTTP/2.0
TLS versionTLSv1.3
TLS cipherTLS_AES_256_GCM_SHA384
Captured2026-07-26T05:39:05.845Z

Request line

GET / HTTP/2.0

HTTP headers 11

HeaderValueWhat it tells the server
hostaudit.bithaven.cloudWhich hostname you requested. Always present.
x-real-ip216.73.217.120(Set by nginx) the IP the proxy saw — your actual address.
x-forwarded-for216.73.217.120(Set by proxies) chain of forwarding addresses.
x-forwarded-protohttps(Set by proxies) original protocol (http / https).
x-original-protocolHTTP/2.0(Set by nginx) the real HTTP version of the client connection.
x-ssl-protocolTLSv1.3(Set by nginx) TLS version negotiated with the client.
x-ssl-cipherTLS_AES_256_GCM_SHA384(Set by nginx) TLS cipher suite negotiated with the client.
connectioncloseConnection reuse hint.
accept*/*Content types your browser accepts (HTML, images, JSON, etc.).
user-agentMozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)Browser + OS string. The single most powerful HTTP-layer fingerprint.
accept-encodinggzip, br, zstd, deflateCompression algorithms you support (gzip, brotli, zstd).

Browser fingerprint (JavaScript)

These read what your browser will divulge to JavaScript running on a page you visit. If your privacy browser's anti-fingerprinting shims are working, several should show spoofed or generic values.

Probes running…

What this audit does not show