SEEK Limited
Good security posture with minor improvements possible. 1 high severity issue found. Strong in: dns, tls, headers, files, general.
No Content-Security-Policy header found. CSP helps prevent XSS attacks.
Recommendation: Implement a Content-Security-Policy header.
HTTP Strict Transport Security is not enabled.
Recommendation: Add the Strict-Transport-Security header to enforce HTTPS.
The server does not support TLS 1.3, the latest TLS version.
Recommendation: Enable TLS 1.3 for improved security and performance.
No security.txt file was found. This file helps security researchers contact you.
Recommendation: Add a security.txt file at /.well-known/security.txt per RFC 9116.
SPF, DMARC, and DKIM are all configured for this domain.
No robots.txt file was found at the root.
Recommendation: Consider adding a robots.txt file to control crawler behavior.