π΅οΈββοΈ Security Headers Scanner
Enter a website URL to check for important HTTP security headers.
Example .htaccess Configuration
<IfModule mod_headers.c> Header set Content-Security-Policy "default-src 'self'" Header set Strict-Transport-Security "max-age=31536000; includeSubDomains" Header set X-Frame-Options "DENY" Header set X-Content-Type-Options "nosniff" Header set Referrer-Policy "no-referrer-when-downgrade" Header set Permissions-Policy "geolocation=(), microphone=()" Header set X-XSS-Protection "1; mode=block" Header set Expect-CT "max-age=86400, enforce" </IfModule>