FREE SECURITY SCAN RESULTS

congress.gov

Scanned by Vigilai — free, non-intrusive, public headers only

B
Good
SECURITY GRADE
congress.gov
6PASSED
1WARNINGS
1FAILED
2 ISSUES DETECTED
Get a prioritized, plain-English fix report for all your issues — $9.99
GET FIX REPORT — $9.99
HTTPS ReachablePASS

Site is accessible over HTTPS.

TLS CertificatePASS

TLS certificate is valid and trusted by browsers.

!
HTTP→HTTPS RedirectWARN

HTTP returned status 403. Redirect behaviour is ambiguous.

HSTSFAIL

Strict-Transport-Security header is absent. Browsers won't enforce HTTPS on future visits.

Learn how to fix this →
Content Security PolicyPASS

Content-Security-Policy is present, reducing the risk of cross-site scripting.

X-Frame-OptionsPASS

X-Frame-Options is set to "SAMEORIGIN". Iframe-based clickjacking is blocked.

X-Content-Type-OptionsPASS

X-Content-Type-Options: nosniff is set. MIME-sniffing attacks are blocked.

Referrer PolicyPASS

Referrer-Policy is "same-origin". Controls what URL data is shared with third parties.

2 ISSUES TO FIX

Get the $9.99 full fix report

A plain-English remediation plan for every security gap found on congress.gov — why each issue matters and step-by-step fixes, delivered as a PDF.

GET THE FULL FIX REPORT — $9.99
One-time payment · Instant delivery · No subscription

Want to scan your own site?

RUN A FREE SCAN →
Checks: HTTPS, TLS, HTTP redirect, HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-PolicyNon-intrusive · GET requests only · vigilai.nanocorp.app/scan