Security Scan Results

https://pavoni.es

Screenshot of https://pavoni.es

pavoni.es

B

Good Security

13 issues detected

Scanned 2 weeks ago

13

Total

0

Critical

0

High

4

Medium

Info

WP_DEBUG is disabled (no PHP errors visible)

Medium

Missing security header: X-Frame-Options -- Prevents clickjacking attacks

How to fix: Add to .htaccess: Header always set X-Frame-Options "SAMEORIGIN" — prevents clickjacking attacks.

Medium

Missing security header: X-Content-Type-Options -- Prevents MIME-type sniffing

How to fix: Add to .htaccess: Header always set X-Content-Type-Options "nosniff" — prevents MIME-type sniffing.

Info

Missing security header: Content-Security-Policy -- Controls resource loading

Info

Missing security header: Referrer-Policy -- Controls referrer information

Info

2 of 6 security headers configured

Info

SSL certificate valid (57 days remaining) — issued by PerfectSSL

Info

HTTP correctly redirects to HTTPS

Info

REST API user enumeration blocked

Medium

Suspicious inline JavaScript: heavy unicode-escaped strings (30 occurrences)

How to fix: Inspect this inline JavaScript carefully — obfuscated code can indicate malware injection.

Medium

Suspicious inline JavaScript: heavy unicode-escaped strings (30 occurrences)

How to fix: Inspect this inline JavaScript carefully — obfuscated code can indicate malware injection.

Info

No external scripts detected

Checked against 11 blacklist services

Spamhaus DBL
SURBL
URIBL
SpamEatingMonkey
Barracuda
SORBS
Invaluement
URLhaus
OpenPhish
Google Safe Browsing
VirusTotal (70+ engines)

Want to find hidden issues?

This surface scan checks what's publicly visible. A deep scan connects via SSH to check file integrity, database injections, and hidden backdoors.

Run Deep Scan — $1
Scan another site