HTTP Headers: blockupy.org
Security score: 0/100
đĄī¸ Security Headers
| Header | Status |
|---|---|
| Strict-Transport-Security | â Missing |
| Content-Security-Policy | â Missing |
| X-Content-Type-Options | â Missing |
| X-Frame-Options | â Missing |
| X-XSS-Protection | â Missing |
đ All Response Headers
Connection Content-Encoding Content-Type Date Permissions-Policy Referrer-Policy Server X-NA X-NID X-Page-Cache X-RL X-location content-security-policy link memento-datetime server-timing x-app-server x-archive-guessed-charset x-archive-guessed-content-type x-archive-orig-connection x-archive-orig-date x-archive-orig-permissions-policy x-archive-orig-referrer-policy x-archive-orig-server x-archive-orig-transfer-encoding x-archive-orig-x-app-server x-archive-orig-x-location x-archive-orig-x-na x-archive-orig-x-nid x-archive-orig-x-page-cache x-archive-orig-x-rl x-archive-orig-x-tr x-archive-orig-x-ts x-archive-src x-tr x-ts
âšī¸ About HTTP Security Headers
Strict-Transport-Security (HSTS) forces browsers to use HTTPS. Content-Security-Policy (CSP) prevents XSS attacks by controlling which resources can load. X-Content-Type-Options stops MIME-type sniffing. X-Frame-Options blocks clickjacking by preventing iframe embedding.
blockupy.org's security score of 0/100 reflects how many of these protective headers are configured. Higher scores indicate better defense against common web attacks.
đ§ More Tools for Blockupy