// Security
An HTTP security header that prevents your page from being loaded inside an iframe on another domain. Stops clickjacking attacks where attackers layer invisible iframes over legitimate buttons to trick users into unintended clicks.
Why it matters: X-Frame-Options is one of the security signals that shapes how search engines, AI tools, and real visitors experience your website. Getting it right removes friction, protects your rankings, and makes every other optimization work harder. Auditing it regularly is the fastest way to catch regressions before they cost you traffic or conversions.
See how your own site handles x-frame-options — no signup required.
Check your site's X-Frame-Options — run the free Security Agent