AUTOSECURITYAPP.COM
Website Security Header Checker
AutoSecurityApp can inspect public websites for HTTPS and common response-security headers. The included server endpoint follows a bounded number of public HTTP(S) redirects and blocks private/reserved network targets.
Checks include
- HTTPS
- Strict-Transport-Security (HSTS)
- Content-Security-Policy (CSP)
- X-Content-Type-Options
- X-Frame-Options
- Referrer-Policy
- Permissions-Policy
- Cross-Origin-Opener-Policy