Review security headers
Check response headers, draft a CSP, then confirm the URL and DNS target are the site you meant to protect.
- 1. HTTP
Inspect status, redirects, pasted headers, and CSP warnings in one surface.
- 2. URL Parse
Separate origin, path, query, and tracking parameters before writing policies.
- 3. DNS
Confirm the hostname resolves to the deployment you are reviewing.