cermati.com Review

TitletagDescriptiontaglanguage
Cermati: Pinjaman, Kartu Kredit, Asuransi, Investasi & Emas Indonesian
Alexarank
N/A
Ip adress34.120.100.196Nameserverns-cloud-a2.googledomains.com
ns-cloud-a1.googledomains.com
ns-cloud-a4.googledomains.com
ns-cloud-a3.googledomains.com
Status code200
robots.txt
 N/A
HTTP/1.1 301 Moved Permanently
Cache-Control: private
Location: https://www.cermati.com:443/
Content-Length: 0
Date: Tue, 30 Jun 2026 03:58:33 GMT
Content-Type: text/html; charset=UTF-8

HTTP/1.1 200 OK
Server: openresty
Date: Tue, 30 Jun 2026 03:58:33 GMT
Content-Type: text/html; charset=utf-8
x-frame-options: SAMEORIGIN
x-request-id: 2046183d-3a2c-497a-90d2-7c0e08a2504b
set-cookie: csrf-secret=s%3AHvmtqevWr5Wds1iMMrl8eK-K.TrWBno8xnBzANz0YdheOwDw4Pia4BwyTvEc%2FU4x9lUQ; Domain=cermati.com; Path=/; HTTPOnly; Secure; HttpOnly; Secure; SameSite=Strict
set-cookie: csrf-token=s%3AUhOn5CQ3-m4DKxhp9IALPp88wsx5LY4mw4Og.uom9sdjrFxSSt1q50yV%2BlR54dlSCXQXN11U1Eb12t2E; Domain=cermati.com; Path=/; HTTPOnly; Secure; HttpOnly; Secure; SameSite=Strict
content-security-policy: frame-ancestors 'self' https://*.cermati.com https://www-cermati-com.cdn.ampproject.org https://www.google.com android-app://com.google.android.googlequicksearchbox http://go.cermati.com https://go.cermati.com https://*.indodana.id https://*.arthainvestateknologi.co.id; report-uri https://www.cermati.com/api/v1/csp/violation-report?signature=92e6ed51703ef04e682bd08faf4a9e900417b916794a573b5997cf204711b2e0; report-to default;
report-to: {"group":"default","max_age":1800,"endpoints":[{"url":"https://www.cermati.com/api/v1/csp/violation-report?signature=92e6ed51703ef04e682bd08faf4a9e900417b916794a573b5997cf204711b2e0"}],"include_subdomains":true}
reporting-endpoints: default="https://www.cermati.com/api/v1/csp/violation-report?signature=92e6ed51703ef04e682bd08faf4a9e900417b916794a573b5997cf204711b2e0"
x-nextjs-cache: HIT
cache-control: s-maxage=43200, stale-while-revalidate
etag: "4i9o4ydgh32k0e"
vary: Accept-Encoding
content-encoding: gzip
x-envoy-upstream-service-time: 92
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000; includeSubDomains
Via: 1.1 google
Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
Transfer-Encoding: chunked

iframe