Security Checks / MIME Sniffing Protection Check
MIME Sniffing Protection Check
Verify X-Content-Type-Options: nosniff is set.
Check a Website
Enter a URL to run a scan and review relevant security signals.
What It Is
nosniff prevents browsers from guessing content types incorrectly.
Why It Matters
It reduces certain XSS vectors and content-type confusion issues.
How to Fix
- Set X-Content-Type-Options: nosniff on all responses.