HTTP & Web Security Analysis
Analyze a public URL to check redirects, HTTPS and the main HTTP security headers.
L’outil n’effectue pas de test d’intrusion : il lit uniquement la réponse HTTP publique de la page demandée.
Contrôles
Chaîne de redirections
En-têtes détectés
Ce score est pédagogique. L’absence d’un en-tête ne signifie pas forcément qu’un site est compromis, et la présence de tous ces en-têtes ne garantit pas qu’il est sécurisé. Une configuration adaptée dépend de l’application.
Use the result with confidence
Recommended workflow
- Enter only the technical identifier required for HTTP and web-security header analysis.
- Run the lookup and distinguish observed facts from interpretation.
- Cross-check warnings with configuration, logs or a second source before acting.
What to verify
- Confirm the scope, units and input values before interpreting the output.
- Separate the observed result from the operational decision that follows from it.
- Validate the conclusion against the real target system, logs or configuration before changing production.
Questions about this tool
What does the result say about HTTP and web-security header analysis?
Treat it as a technical snapshot: DNS, reputation or HTTP-security data can change and should be interpreted with the service context.
Can one warning alone prove a compromise?
No. A warning identifies a condition to investigate; correlate it with logs, configuration and other independent evidence.
When should I run the check again?
Repeat it after DNS, certificate, firewall or web-server changes and whenever the result may have changed because of propagation or cache expiry.