I’m looking for someone with web security experience to do a basic vulnerability and API exposure check on my website: https://www.mymaternalhub.co.uk
This isn’t a high-risk or enterprise-level system, but it will collect personal information, so I want to make sure there are no exposed API endpoints, admin panels, or misconfigurations that could put user data at risk.
I’d like you to:
Identify any exposed API endpoints
Check for open directories or admin pages
See if any sensitive files like .env, .git, server-status, etc. are publicly accessible
Look for common vulnerabilities (like XSS, CSRF, SQL injection)
Scan for subdomains or staging environments I may have forgotten about
Check if any secrets, tokens, or API keys are visible in frontend code
Review basic security headers and misconfigurations
Provide a simple report with what you found and what I should fix
Optional but appreciated: if you can recommend or help apply basic fixes like security headers or hardening steps.
This should be a non-invasive audit — I don’t want anything aggressive like brute-force attempts or DDoS tests. Just surface-level scanning and light probing using tools like OWASP ZAP, WPScan, Nikto, Nmap, or anything else you're comfortable with.
P2P Web Arcade Expansion and Marketing Category: CSS, Game Development, JavaScript, Mobile App Development, PHP, Stripe, Web Development, Web Hosting Budget: $30 - $250 USD
Multi-Platform Application and Website Development Category: Android, Database Management, IOS Development, Mobile App Development, PHP, UI / User Interface, Web Development, Web Design Budget: $15 - $25 USD
Instagram Video Polish & Music Category: Adobe Premiere Pro, After Effects, Animation, Color Grading, DaVinci Resolve, Final Cut Pro, Motion Graphics, Video Editing, Video Post Editing, Video Production Budget: $10 - $30 USD
27-Feb-2026 22:47 GMT
Public Health Research Assistant Category: Academic Research, Data Analysis, Public Health, Report Writing, Research, Research Writing, Statistical Analysis Budget: $8 - $15 USD