Security Checks / MIME Sniffing Protection Check

MIME Sniffing Protection Check

Verify X-Content-Type-Options: nosniff is set.

Check a Website

Enter a URL to run a scan and review relevant security signals.

What It Is

nosniff prevents browsers from guessing content types incorrectly.

Why It Matters

It reduces certain XSS vectors and content-type confusion issues.

How to Fix

  • Set X-Content-Type-Options: nosniff on all responses.