HTTP security headers audit HTTP security headers audit

Audit HTTP security headers online

Enter a website URL to inspect browser security headers such as Content-Security-Policy, Strict-Transport-Security, X-Frame-Options, X-Content-Type-Options and Referrer-Policy.

The report grades the response, highlights missing or weak policies and gives practical recommendations for reducing clickjacking, MIME sniffing, referrer leakage and downgrade risks.

The tool runs directly in the browser and is ready for quick checks without installing software.
Input can be cleared and recalculated immediately, which is useful for repeated small tasks.
Use fullscreen mode when you need more space for long text, structured data or large result blocks.
Copy buttons are available on generated output so results can be reused in code, documents or support chats.
Most operations are deterministic: the same input and options produce the same output.
For sensitive content, prefer local browser tools and review the result before sharing it further.