All Security Checks
HeadersLow PriorityFree
Server information disclosure
Server headers that reveal software versions can help attackers identify vulnerable components to exploit.
Why It Matters
Knowing your exact server software and version helps attackers find known vulnerabilities. Security through obscurity isn't sufficient alone, but reducing information disclosure is good practice.
How We Check
We check Server and X-Powered-By headers for version information that could aid attackers.
How to Fix
Configure your web server to remove or generalize the Server header. Remove X-Powered-By header entirely. In Express: app.disable('x-powered-by').
Related Security Checks
Related Tool
Security Headers Checker
Run all 10 related checks with our free security headers checker
Check Your Website Now
Run a free security scan to check for Server information disclosure issues and 58+ other security vulnerabilities.
Scan Your Website Free