← Back to Home

Server Configuration Auditor

Check for security misconfigurations amongst the Server Headers (OWASP A05 - Security Misconfiguration)

Header Input

Paste full HTTP response headers once. The analyzers below reuse this input.

CSP Analyzer

Analyzes the Content-Security-Policy header from the shared header input above.

Cookie Security Analyzer

Extracts and analyzes Set-Cookie headers from the shared header input above.

CORS Header Analyzer

Evaluates Access-Control-* headers from the shared header input above for risky combinations.

Remediation Guidance