Service

Header Inspector

Readiness Level
Intermediate

CISA does not endorse any commercial product or service. CISA does not attest to the suitability or effectiveness of these services and resources for any particular use case. Any reference to specific commercial products, processes, or services by service mark, trademark, manufacturer, or otherwise, does not constitute or imply their endorsement, recommendation, or favoring by CISA.

Description

Header Inspector sends an HTTP request to a site the user inputs. Head Inspector then retrieves the base domain (example.com vs. example.com/link/to/page.html) and inspects the response headers (cookies, security policies, data exposure). It then presents a score as well as suggestions for improving the security configuration.

LEARN ABOUT CISA’S CPGS