marketaiguide
opensaas.sh

Open SaaS (Wasp)

A fully free, MIT-licensed React + Node + Prisma SaaS template built on the Wasp framework, with auth, payments, an admin dashboard, file uploads and email included.

Free and open source (MIT). No licence fee; your only costs are hosting and third-party services. Open source Appears in 1 guide
Where it ranks

Guides that include Open SaaS (Wasp).

Security headers

What Open SaaS (Wasp)'s website sends to your browser.

Scanned 2026-08-25. Grade headers F, scoring 5 out of 100.

No Content-Security-Policy, so no defence in depth against cross-site scripting
No Strict-Transport-Security, so browsers may still attempt plain HTTP
No X-Content-Type-Options, so MIME sniffing is not disabled
No X-Frame-Options and no CSP frame-ancestors, so clickjacking is possible
No Referrer-Policy, so full URLs may leak to third parties
No Permissions-Policy, so powerful browser features are not restricted
No Cross-Origin-Opener-Policy
No Cross-Origin-Resource-Policy
+ No server-version or X-Powered-By disclosure

This is one narrow, automated check of the HTTP response headers on the vendor's own website. It says nothing about how the product itself is built, how it stores your data, or whether it has ever been audited. A good grade here is a small signal that somebody was paying attention.

Visit Open SaaS (Wasp)