Security Space
Logged in as : visiteur@webguardian.cloud GUEST PROFIL: VISITOR
Current Subscription
Monitoring Quota
Live Demonstration Domain
This field is fixed to official reference domain webguardian.cloud (read-only anti-abuse). To place your own website under 24/7 continuous monitoring and generate diagnostic reports, choose your plan below.
Your Monitored Domains
SecOps Posture Evolution & Regression Detection
webguardian.cloud
OWASP 8 HTTP Headers Control Matrix
Headers score: 100 / 100 ptscontent-security-policydefault-src 'self' (Blocks XSS script injections)
strict-transport-securitymax-age=31536000; includeSubDomains (Enforces permanent HTTPS)
x-frame-optionsSAMEORIGIN or DENY (Neutralizes clickjacking)
x-content-type-optionsnosniff (Blocks execution of disguised MIME uploads)
referrer-policystrict-origin-when-cross-origin (Protects sensitive query params)
permissions-policycamera=(), microphone=(), geolocation=() (Restricts sensitive browser APIs)
cross-origin-opener-policysame-origin (Isolates browsing context from external tabs)
cross-origin-embedder-policyrequire-corp (Strict control of loaded subresources)
Detailed TLS & Modern Cryptography Audit
Encryption Status: TLS 1.3 StrictTLS_AES_256_GCM_SHA384 / ChaCha20-Poly1305
Perfect Forward Secrecy guaranteed via ECDHE key exchange.
Cookies & Session Security Audit
Cookies Status: 0 Vulnérabilité__Host-wg_sess preventing subdomain hijacking or cookie tossing.