Progress for each OWASP category will appear here as the scan runs.
Category results
Progress
0/10
0% complete
- Pending
A01:2025
Broken Access Control
Validates endpoint and privilege boundary exposure.
- Pending
A02:2025
Security Misconfiguration
Looks for exposed configs, headers, and default hardening gaps.
- Pending
A03:2025
Software Supply Chain Failures
Assesses dependency and update pipeline risk indicators.
- Pending
A04:2025
Cryptographic Failures
Checks transport and data protection controls.
- Pending
A05:2025
Injection
Evaluates input handling and query execution safety.
- Pending
A06:2025
Insecure Design
Reviews architecture-level abuse resistance patterns.
- Pending
A07:2025
Authentication Failures
Probes identity, session, and credential flow weaknesses.
- Pending
A08:2025
Software or Data Integrity Failures
Checks update trust boundaries and integrity guarantees.
- Pending
A09:2025
Security Logging and Alerting Failures
Assesses event visibility and incident response readiness.
- Pending
A10:2025
Mishandling of Exceptional Conditions
Inspects resilience and fallback behavior under errors.
About Security audit
This page runs OWASP Top 10:2025–aligned checks via Goditor. Use it alongside code review and penetration testing for a complete security posture.
Why don't I have access to the full audit?
Critical vulnerabilities on the site may be discovered. Following responsible disclosure principles, a full report is only sent to an email address registered under your site's domain.