Website Security Test of xdaforums.com

Test your website and web server for security, privacy, encryption, protection from data scraping, and compliance with GDPR and PCI DSS
Free online tool with PDF report
  • Web Security Vulnerabilities Scan
  • AI Bot Protection Test
  • HTTP Security & Privacy Headers Test
  • DNSSEC Configuration Test
  • GDPR & PCI DSS Compliance Test
  • Content Security Policy (CSP) Test
Free online tool with PDF report
189,025,087 tests performed
Provided "as is" without any warranty of any kind
118
tests
running
28,389
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of xdaforums.com [Desktop version] Website Security Test

Provided "as is" without any warranty of any kind.
Date/Time:Mar 18th, 2026 21:52 GMT+0
Server IP:3.214.214.173
Reverse DNS:ec2-3-214-214-173.compute-1.amazonaws.com
Location:Ashburn, United StatesUnited States
Version:for desktop
Your final score:
  • A
  • B
  • C
  • F
A
This test was made 60 days ago and may be outdated
Refresh Test

Executive Summary for xdaforums.com

  • Web Software Security Test
    7 third-party web software dependancies were identified, including 6 outdated dependancies. No known vulnerabilities were detected. One identified third-party web software dependancy has an unknown version. The CMS (XenForo) was identified, however, its version could not be determined. The following CMS components, JS-libraries or frameworks were identified: jquery, core-js, core-js, and others. Show details.
  • GDPR Compliance Test
    Potential GDPR compliance issues were identified related to Privacy Policy, Cookie Disclaimer. Show details.
  • PCI DSS Compliance Test
    The website is compliant with PCI DSS Requirement 6.3, while being non-compliant with Requirement 6.4. Show details.
  • HTTP Headers Security Test
    Issues were identified with key security headers: misconfigured Content-Security-Policy, X-Frame-Options. Optional HTTP headers appear to be properly configured: Server, Referrer-Policy, Cache-Control. Deprecated HTTP headers detected: X-XSS-Protection. Show details.
  • Content Security Policy (CSP) Test
    Content-Security-Policy is enforced but configuration issues were identified: directive errors, overly permissive directives. A report-only Content-Security-Policy is not present. Show details.
  • Cookies Privacy and Security Test
    One cookie detected; xf_csrf has security or privacy-related configuration issues. Show details.
  • External Content Security Test
    194 external requests detected; 9 requests failed. SRI is not used for 57 third-party JavaScript and CSS files. Show details.
  • Protection from Data Scraping Test
    No significant anti-scraping protections were detected. Show details.
  • DNSSEC Configuration Test
    DNS A record detected; DNSSEC signatures are not present. Show details.
Please wait. Data is loading...
Share this report: