Header Guardian is a Burp Suite extension designed to enhance the security of web applications by identifying missing, misconfigured, and unnecessary HTTP security headers. Properly configured security headers are critical in protecting against vulnerabilities like cross-site scripting (XSS), clickjacking, and information leakage.

Features

How to use

  1. Once the extension is installed, it will automatically scan HTTP responses during passive scans.
  2. Results can be found in the Issues tab.