← Radar

hilton.com

What our own request to this host returned, over the last 30 days. Nothing here was tested for weaknesses and nothing was captured from anyone else's traffic.

Last status

403 — refused

Answered

50% of 6 probes

Refused

3 of 6 probes over 30 days

Median open time

8839 ms

Last seen

2026-09-18 06:21:26 UTC

“Answered” is how often our own request got a response, from one region at one probe per day. It is not an uptime figure and must not be read as one. A refusal is a response, so a refused probe counts as answered. "Refused" counts the probes whose answer was 403 or 429.

Our last probe was refused

Our request was refused at an address this host chose: after 2 redirects it ended at https://www.hilton.com/en/, which answered 403.

3 of our 6 probes over the last 30 days were refused.

We never asked for a particular page: each probe is one request, from one region, to the hostname's front door, following whatever redirects the host sends. A refusal is an answer rather than a failure to answer, and we do not record what made it — so this is not a measurement of whether the site works for anyone else.

Transport

TLS

1.3

Certificate expiry

131 days left

Issuer

DigiCert Global G3 TLS ECC SHA384 2020 CA1

Chain valid

valid

Name matches

matches

HTTP version

2

Cipher

TLS_AES_256_GCM_SHA384

Address family

v4

Headers and cookies

Header grade

not measured

HSTS

not measured

Mixed content

not measured

Cookie flags

not measured

Redirect hops

2

Exposure check

not measured

The request ended at https://www.hilton.com/en/. 3 of the 3 probes that got a response ended on a different host, so the fields above may describe that host rather than this one.

Where the time went

DNS (first request) 1 msConnect (first request) 30 msTLS handshake (first request) 0 msRedirects, then waiting for the first byte 8500 msTransfer 49 ms

8580 ms in total, across 3 requests — the first and 2 redirects. Transfer is the remainder after the first byte rather than a separately measured phase.

Only the first request’s DNS, connection and TLS are timed separately, so that segment is not server think-time alone: it carries the other 2 requests and anything else between the first connection and the first byte.

The TLS handshake reads 0 ms because the first request was plain HTTP, so there was no handshake to time. The TLS version and certificate above are from the HTTPS hop the origin redirected to, which is a different connection from the one timed here.

121,972 bytes returned, after 2 redirects. The body hit our read cap, so that is a floor and not the size of the response.

Registration and published DNS

Domain registration

63 days left

Registrar

MarkMonitor Inc.

Registered

1994-11-23

DNSSEC

not signed

SPF

hardfail

DMARC

quarantine

Accepts mail

MX published

Registry record read over RDAP on 2026-09-13. SPF and DMARC read from public DNS on 2026-09-15. Neither involves a request to this host, and neither is a test: we read what the registry and the domain’s own DNS publish. A published policy is not evidence about what a mail receiver would actually do.

By observer region

Measured from one region. The per-region comparison §5.5 describes needs more than one, and the deployment has one today.