HTTP Headers
https://en.wikipedia.org/wiki/List_of_HTTP_header_fields
https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers
Check headers security
MDN HTTP Observatory (note that the HTTP Observatory is for websites, not APIs - source):
- New version: https://developer.mozilla.org/en-US/observatory
- Previous version (deprecated July 2024): https://observatory.mozilla.org
https://pentest-tools.com/website-vulnerability-scanning/website-scanner
Content-Type
The media type.
https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Type