HTTP Headers: dora.run

Security score: 0/100

🛡️ Security Headers
HeaderStatus
Strict-Transport-Security❌ Missing
Content-Security-Policy❌ Missing
X-Content-Type-Options❌ Missing
X-Frame-Options❌ Missing
X-XSS-Protection❌ Missing
📋 All Response Headers
Accept-Ranges
Access-Control-Allow-Credentials
Access-Control-Allow-Headers
Access-Control-Allow-Methods
Access-Control-Allow-Origin
Access-Control-Max-Age
Age
Connection
Content-Type
Date
ETag
Server-Timing
Vary
X-Cache-Hits
X-Kong-Proxy-Latency
X-Kong-Upstream-Latency
cache-control
expires
last-modified
x-amz-id-2
x-amz-meta-content-length
x-amz-request-id
x-amz-server-side-encryption