FREE SECURITY SCAN RESULTS

usa.gov

Scanned by Vigilai — free, non-intrusive, public headers only

B
Good
SECURITY GRADE
usa.gov
5PASSED
3WARNINGS
0FAILED
3 ISSUES DETECTED
Get a prioritized, plain-English fix report for all your issues — $9.99
GET FIX REPORT — $9.99
HTTPS ReachablePASS

Site is accessible over HTTPS.

TLS CertificatePASS

TLS certificate is valid and trusted by browsers.

!
HTTP→HTTPS RedirectWARN

HTTP returned status 404. Redirect behaviour is ambiguous.

HSTSPASS

HSTS is present (max-age=63072000; includeSubdomains). Browsers will enforce HTTPS.

!
Content Security PolicyWARN

No Content-Security-Policy header. The site has no XSS injection restrictions in place.

Learn how to fix this →
X-Frame-OptionsPASS

X-Frame-Options is set to "DENY". Iframe-based clickjacking is blocked.

X-Content-Type-OptionsPASS

X-Content-Type-Options: nosniff is set. MIME-sniffing attacks are blocked.

!
Referrer PolicyWARN

Referrer-Policy is not set. Full URLs may be leaked to third-party sites via the Referer header.

3 ISSUES TO FIX

Get the $9.99 full fix report

A plain-English remediation plan for every security gap found on usa.gov — why each issue matters and step-by-step fixes, delivered as a PDF.

GET THE FULL FIX REPORT — $9.99
One-time payment · Instant delivery · No subscription

Want to scan your own site?

RUN A FREE SCAN →
Checks: HTTPS, TLS, HTTP redirect, HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-PolicyNon-intrusive · GET requests only · vigilai.nanocorp.app/scan