Modern Python library for HTTP security headers with safe defaults, configurable presets, and first-class ASGI/WSGI middleware (FastAPI, Django, Flask, Shiny, and more).
-
Updated
Jul 23, 2026 - Python
Modern Python library for HTTP security headers with safe defaults, configurable presets, and first-class ASGI/WSGI middleware (FastAPI, Django, Flask, Shiny, and more).
Internet standards compliance test suite
Web security and compliance scanner. SSL/TLS, headers and cookie analysis mapped to GDPR, PCI-DSS, ISO 27001 and HIPAA. CVSS v3.1 scoring, PDF reports, SARIF export. GTK4 desktop GUI. Part of the ShieldEye toolkit.
A scan of all .gov.uk sites for the most common security headers or lack of
A Python-based HTTP security header analyzer that identifies weak or missing policies (CSP, HSTS, XFO, etc.) and generates OWASP-aligned remediation reports.
Network security scanner. Nmap-powered port scanning, CMS detection with live CVE lookup (CIRCL), security headers scoring and SSL/TLS analysis. GTK4 desktop GUI. Part of the ShieldEye toolkit.
A Security HTTP-Header Checker. # Demoisturize it!
OWASP Security Header Checker Tool
🔒 CLI tool for analyzing website security headers. Checks 15+ security headers, provides detailed reports, and exports to TXT/JSON/CSV. Perfect for security audits and compliance checks.
🛡️ Professional-grade security scanner with beautiful UI - Standalone Windows executable for comprehensive website security analysis (No Python required)
Ch4120N Security Header Analyzer is a professional, cross-platform security tool for comprehensive HTTP header analysis, vulnerability detection, and security reporting with beautiful multi-format outputs.
OpenSiteTrust is an open, explainable, and reusable website scoring ecosystem
CSP-safe replacements for FastAPI's built-in /docs, /redoc, and OAuth2 redirect endpoints, with no inline script or style, so a strict Content-Security-Policy still works
security bash http owasp security-headers tls ssl cookies curl web-security security-audit fastapi docker nginx spa pentest vulnerability-scanner devops ci-cd linux
Explainable AI-Powered URL Trust Intelligence Engine — 15+ parallel analysis engines, hybrid 70/30 rule+AI scoring, brand impersonation detection, behavioral analysis, and full-transparency evidence breakdown. Self-hosted, open-source.
Simba is a web headers security scanner
Professional ethical web scraper for cybersecurity research - CLI + Web UI, security headers analysis, tech stack detection
CJChecker is a small command-line tool that checks web applications for basic Clickjacking protection by analyzing HTTP response headers.
Lightweight Python web scanner with BFS crawling, form analysis, multi-threaded requests, and automated tests for XSS, SQLi, and missing security headers
HTTP Security Headers Configuration Check utilities
Add a description, image, and links to the security-headers topic page so that developers can more easily learn about it.
To associate your repository with the security-headers topic, visit your repo's landing page and select "manage topics."