All Security Checks
HeadersMedium PriorityFree
Content-Type header
The Content-Type header specifies the MIME type of the response, ensuring browsers handle content correctly.
Why It Matters
Incorrect or missing Content-Type can lead to MIME confusion attacks where browsers misinterpret content. This is especially important for JSON APIs and file downloads.
How We Check
We verify that responses include appropriate Content-Type headers with correct MIME types and charset specifications.
How to Fix
Ensure all responses include Content-Type. For HTML: Content-Type: text/html; charset=utf-8. For JSON: Content-Type: application/json.
Related Security Checks
Related Tool
Security Headers Checker
Run all 10 related checks with our free security headers checker
Check Your Website Now
Run a free security scan to check for Content-Type header issues and 58+ other security vulnerabilities.
Scan Your Website Free