Security Checks / Clickjacking Protection Check

Clickjacking Protection Check

Verify X-Frame-Options / frame-ancestors configuration.

Check a Website

Enter a URL to run a scan and review relevant security signals.

What It Is

Clickjacking embeds your site in an invisible frame to trick users.

Why It Matters

Blocking framing prevents UI redress attacks on sensitive actions.

How to Fix

  • Set X-Frame-Options: DENY (or SAMEORIGIN if needed).
  • Prefer CSP frame-ancestors for modern control.