FREE SECURITY SCAN RESULTS

justice.gov

Scanned by Vigilai — free, non-intrusive, public headers only

A
Excellent
SECURITY GRADE
justice.gov
8PASSED
0WARNINGS
0FAILED
HTTPS ReachablePASS

Site is accessible over HTTPS.

TLS CertificatePASS

TLS certificate is valid and trusted by browsers.

HTTP→HTTPS RedirectPASS

HTTP traffic is automatically redirected to HTTPS.

HSTSPASS

HSTS is present (max-age=31536000; includeSubDomains; preload). Browsers will enforce HTTPS.

Content Security PolicyPASS

Content-Security-Policy is present, reducing the risk of cross-site scripting.

X-Frame-OptionsPASS

X-Frame-Options is set to "ALLOW-FROM HTTPS://DOJ365.SHAREPOINT.US". Iframe-based clickjacking is blocked.

X-Content-Type-OptionsPASS

X-Content-Type-Options: nosniff is set. MIME-sniffing attacks are blocked.

Referrer PolicyPASS

Referrer-Policy is "no-referrer-when-downgrade". Controls what URL data is shared with third parties.

IMPROVE YOUR SCORE

Get the $9.99 full fix report

A plain-English remediation plan for every security gap found on justice.gov — why each issue matters and step-by-step fixes, delivered as a PDF.

GET THE FULL FIX REPORT — $9.99
One-time payment · Instant delivery · No subscription

Want to scan your own site?

RUN A FREE SCAN →
Checks: HTTPS, TLS, HTTP redirect, HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-PolicyNon-intrusive · GET requests only · vigilai.nanocorp.app/scan