Skip to content
#

security-headers

Here are 40 public repositories matching this topic...

Certify your citadel. Passive, authorized external security-posture assessment that grades TLS, HTTP headers, cookies, DNS and email auth across a company's assets and issues a leveled certificate + badge. Zero dependencies. Never exploits, only inspects what you authorize.

  • Updated Sep 5, 2026
  • JavaScript

Chrome extension (Manifest V3) that grades the security of the page you're on, A to F: TLS certificate, security headers, cookies, API calls, hardcoded secrets and vulnerable JS libraries. 100% local, no telemetry, zero dependencies.

  • Updated Sep 13, 2026
  • JavaScript

CLI security and attack-surface audit tool for websites. Runs unauthenticated checks (security headers, TLS, CMS/CDN fingerprinting, exposed admin paths, CVEs, subdomains, open ports, PII leaks, CORS) and outputs a risk-graded HTML/PDF dashboard, CSV data, and a ticket-ready backlog.

  • Updated Aug 10, 2026
  • JavaScript

Add this topic to your repo

To associate your repository with the security-headers topic, visit your repo's landing page and select "manage topics."

Learn more