Security Header Checker
Check which security headers your site has — and which ones are missing.
Only scan websites you own or have permission to test.
Other Free Tools
.env Leak Scanner
Check if your site exposes .env files, git repos, or configuration files that could leak secrets.
Security Score Calculator
Answer 10 questions about your stack to get an estimated security score with personalized recommendations.
RLS + Firebase Rules Checker
Paste your Supabase RLS policies or Firebase security rules and get an instant analysis of misconfigurations.
OWASP Quick Audit
Check your app against the OWASP Top 10 with a free 10-question audit. Get per-category grades and recommendations.