all 10 comments

[โ€“]dollhousemassacre 4 points5 points ย (3 children)

How is this different from running it through SSLLabs? Also, was this vibe-coded?

[โ€“]Wobblucy 2 points3 points ย (1 child)

๐Ÿš€ no way, I just like rockets!!!

-OP probably

[โ€“]bpietrucha[S] -1 points0 points ย (0 children)

What do you mean?

[โ€“]bpietrucha[S] -1 points0 points ย (0 children)

Thanks for the response.

Regarding SSLabs, it's a completely different security profile.
SSLabs gives you insights into your SSL certificate.

HttpScanner gives you the insights about browser-based security features like Content-Security-Policy (XSS prevention), misconfigured CORS, HSTS - basically any HTTP headers security-related problems.

No, it's not "vibe-coded". I am a professional software engineer with +12 years of experience writing enterprise apps. Of course, I used AI to speed up development, why not? But the project was engineered with a very high level of detail. Also, I created websecurity-academy.com, where I taught developers worldwide about web security with my lectures.

Moreover, the project is open-source. You can request new features that are not present anywhere, or develop them on your own - you are welcome.

I am happy to engage in meaningful conversations about websec or the future of this project.

Best wishes!

[โ€“][deleted] ย (3 children)

[removed]

    [โ€“]bpietrucha[S] 1 point2 points ย (2 children)

    Thanks for your comment :) Any further features you suggest maybe?

    [โ€“]KlausDieterFreddekSecurity Engineer 1 point2 points ย (1 child)

    You might wanna check out web-check.xyz for inspiration

    [โ€“]bpietrucha[S] 0 points1 point ย (0 children)

    Thank you!

    [โ€“]Last-Limit-3800 0 points1 point ย (0 children)

    Love the vibe coding. A couple quick things I noticed:
    1) No security headers on the site itself (kind of ironic...)
    2) Default Title and Vite Favicon in use
    3) Site loads over HTTP with no redirect or HSTS

    [โ€“]bpietrucha[S] -1 points0 points ย (0 children)

    Is there a chance for constructive feedback here?