glferreira-devsecops/Cascavel Header Guard

Audit HTTP security headers of any URL. Checks HSTS, CSP, X-Frame-Options, and 15+ headers with scoring.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stale
License
None
namedescriptionrequireddefault
urlsComma-separated URLs to scan (e.g., https://example.com,https://api.example.com)yes
fail-scoreMinimum passing score (0-100). Pipeline fails if any URL scores below thisno50
fail-on-missing-criticalFail if any critical header is missing (HSTS, CSP, X-Content-Type-Options)notrue
timeoutHTTP request timeout in secondsno10
follow-redirectsFollow HTTP redirectsnotrue
user-agentCustom User-Agent stringnoCascavel-HeaderGuard/1.0 (+https://rettecnologia.org)
namedescription
total-scoreAverage score across all scanned URLs (0-100)
worst-scoreLowest score among all scanned URLs
missing-criticalNumber of missing critical headers across all URLs
report-pathPath to the detailed JSON report