https://www.afdelingoost.nl
Scan complete
www.afdelingoost.nl
15 issues detected
Scanned 1 month ago
15
Total
0
Critical
0
High
3
Medium
WordPress version 6.9.4 detected
WP_DEBUG is disabled (no PHP errors visible)
PHP 8.5.6 detected (supported version)
X-Powered-By header exposed: PHP/8.5.6 — reveals server software
How to fix: Hide X-Powered-By header. In php.ini set expose_php = Off, or add Header unset X-Powered-By to .htaccess.
Missing security header: X-Frame-Options -- Prevents clickjacking attacks
How to fix: Add to .htaccess: Header always set X-Frame-Options "SAMEORIGIN" — prevents clickjacking attacks.
Missing security header: X-Content-Type-Options -- Prevents MIME-type sniffing
How to fix: Add to .htaccess: Header always set X-Content-Type-Options "nosniff" — prevents MIME-type sniffing.
Missing security header: Strict-Transport-Security -- Enforces HTTPS connections
How to fix: Add to .htaccess or nginx: Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains"
Missing security header: Content-Security-Policy -- Controls resource loading
Missing security header: Referrer-Policy -- Controls referrer information
Missing security header: Permissions-Policy -- Controls browser feature access
SSL certificate valid (73 days remaining) — issued by Let's Encrypt
HTTP correctly redirects to HTTPS
REST API user enumeration blocked
No external scripts detected
Checked against 11 blacklist services
Your site passed the surface scan. For complete peace of mind, a deep scan checks file integrity, database injections, and hidden backdoors at the server level.
Run Deep Scan — $1