Just Jeans

Melbourne, VIC
Retail

Australian denim and casual wear retailer

Security Score
C
73/100

Moderate security posture. Several improvements recommended. 1 high severity issue found. Strong in: dns, tls, files, general.

Scanned 8 days ago

Is this your business?

Claim this page to get detailed reports, request re-scans, and manage your profile.

Missing Content-Security-Policy
HIGH
HEADERS

No Content-Security-Policy header found. CSP helps prevent XSS attacks.

Recommendation: Implement a Content-Security-Policy header.

Missing X-Content-Type-Options
MEDIUM
HEADERS

No X-Content-Type-Options header found.

Recommendation: Add X-Content-Type-Options: nosniff header.

No DKIM records detected
LOW
DNS

No DKIM records found for common selectors. DKIM provides email authentication.

Recommendation: Configure DKIM signing for your email service.

Missing CAA records
LOW
DNS

No CAA records found. CAA records specify which CAs can issue certificates.

Recommendation: Add CAA records to restrict certificate issuance to trusted CAs.

HSTS max-age is short
LOW
TLS

HSTS max-age is 600 seconds (recommended: 1 year).

Recommendation: Increase HSTS max-age to at least 31536000 (1 year).

Missing Permissions-Policy
LOW
HEADERS

No Permissions-Policy header found.

Recommendation: Add a Permissions-Policy header to control browser features.

X-Powered-By header present
LOW
HEADERS

Technology stack disclosed: Servlet/3.0

Recommendation: Remove the X-Powered-By header to hide technology stack.

No security.txt found
LOW
FILES

No security.txt file was found. This file helps security researchers contact you.

Recommendation: Add a security.txt file at /.well-known/security.txt per RFC 9116.

HSTS does not include subdomains
INFO
TLS

HSTS is not applied to subdomains.

Recommendation: Consider adding includeSubDomains to HSTS if applicable.

Excellent TLS configuration
INFO
TLS

Valid certificate, HSTS enabled, and TLS 1.3 supported.

No robots.txt found
INFO
FILES

No robots.txt file was found at the root.

Recommendation: Consider adding a robots.txt file to control crawler behavior.