CSP Analyzer
SecurityAnalyze Content Security Policy headers. Check for unsafe-inline, unsafe-eval, and wildcards.
Analyze Content Security Policy headers. Check for unsafe-inline, unsafe-eval, and wildcards.
Get access to all 150+ tools with higher limits. Start with 100 free credits — no credit card required.
curl -X POST "https://krawly.io/api/v1/tools/csp-analyzer/" \
-H "Content-Type: application/json" \
-H "Authorization: Bearer YOUR_API_KEY" \
-d '{"url": "https://example.com"}'CSP Analyzer parses Content-Security-Policy headers to evaluate their effectiveness. It checks for unsafe directives, missing policies, and provides a security score.
Check DMARC, SPF, and DKIM DNS records for any domain to assess email authentication and prevent spoofing.
Find HTTP resources loaded on HTTPS pages. Detect active and passive mixed content issues.
Analyze cookies set by a website. Check Secure, HttpOnly, SameSite flags and compliance issues.
Test CORS configuration for vulnerabilities. Check wildcard, null origin, and credential leaks.