security_headers
Audits the HTTP security headers of one URL (CSP, HSTS, X-Frame-Options, Permissions-Policy, cross-origin policies and others) and returns per-header findings with fix advice, a score and a letter grade. Use it when you need header hardening advice; security_scan runs this audit together with URL reputation and subdomain discovery in one call.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| url | Yes | URL to audit HTTP security headers for (CSP, HSTS, X-Frame-Options, etc.). |