01Detection of information disclosure via Server and X-Powered-By headers
02Comprehensive CSP analysis for 'unsafe-inline' and wildcard bypasses
030 GitHub stars
04Detailed HSTS and transport security verification for SSL stripping defense
05Automated header collection and multi-page scanning using curl
06Cookie security flag auditing including Secure, HttpOnly, and SameSite