Security Audit
0/100
Astra Health ScoreSecurity Audit Results
We detected suboptimal or unsafe practices on your website. Please see the list below for more details.
-
Csp Not Implemented Best Practice Medium
Description:Content Security Policy (CSP) header not implemented.
-
Hsts Not Implemented Best Practice Medium
Description:HTTP Strict Transport Security (HSTS) header not implemented.
-
Sri Not Implemented And External Scripts Not Loaded Securely Best Practice Medium
Description:Subresource Integrity (SRI) not implemented, and external scripts are loaded over HTTP or use protocol-relative URLs via src="//...".
-
X Content Type Options Not Implemented Best Practice Medium
Description:X-Content-Type-Options header not implemented.
-
X Frame Options Not Implemented Best Practice Medium
Description:X-Frame-Options (XFO) header not implemented.
-
X Xss Protection Not Implemented Best Practice Medium
Description:X-XSS-Protection header not implemented.