Security report for example.com
Free passive scan · WAF/CDN, security headers, TLS, server exposure
D
example.com
Security score 55/100 · Edge: Cloudflare
What we found
Missing HSTSMedium
The HSTS response header is not set.
Missing Content-Security-PolicyMedium
The Content-Security-Policy response header is not set.
Missing X-Frame-OptionsMedium
The X-Frame-Options response header is not set.
Missing X-Content-Type-OptionsLow
The X-Content-Type-Options response header is not set.
Missing Referrer-PolicyLow
The Referrer-Policy response header is not set.
Missing Permissions-PolicyLow
The Permissions-Policy response header is not set.
✓ Edge protection detected (Cloudflare)
example.com has 6 missing security headers — which a managed AWS WAF would close.
Protect example.com — $150/mo, fully managedWant your own report? Scan your site free →