Free Security Headers Checker

Check HSTS, CSP, X-Frame-Options, and all critical security headers with detailed recommendations.

βœ“ No signup required βœ“ Instant results βœ“ 100% free

Why Security Headers Matter

πŸ›‘οΈ HSTS

Forces browsers to use HTTPS connections, preventing downgrade attacks.

πŸ”’ CSP

Controls resource loading to prevent XSS and data injection attacks.

πŸ–ΌοΈ X-Frame-Options

Protects against clickjacking by controlling iframe embedding.

πŸ“„ X-Content-Type-Options

Prevents MIME-type sniffing to reduce XSS risks.

πŸ”— Referrer-Policy

Controls how much referrer information is shared with requests.

🎯 Permissions-Policy

Controls which browser features and APIs can be used.