Website header security report https://mep.city
Overall status
- Security grade: A (high)
- IP address: 185.69.154.80
- Report date and time: Jan 10, 2025, 12:33:49 UTC
HTTP header status
- Configured headers:
- X-Frame-Options: protects against clickjacking
- X-Content-Type-Options: prevents MIME type sniffing
- Content-Security-Policy: protects against XSS and controls resource loading
- Strict-Transport-Security (HSTS): enforces HTTPS
- Missing or not configured:
- Referrer-Policy
- Permissions-Policy
Conclusions
- Strengths: Solid baseline security due to enabled X-Frame-Options, HSTS, X-Content-Type-Options, and CSP
- Gaps: Missing Referrer-Policy and Permissions-Policy leave minor potential risks