HTTP Strict Transport Security (HSTS) Max-Age Value Too Low

Severity: Information
Summary#

HTTP Strict Transport Security (HSTS) header's max-age value is lower than the recommended value.

Remediation#
It is recommended to set the max-age to a big value like 31536000 (12 months) or 63072000 (24 months).
Classifications#
Invicti Logo

Dead accurate, fast & easy-to-use Web Application Security Scanner

Get a demo