Security headerspassive7 security headers checked: CSP, HSTS, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, X-XSS-Protection. Each missing one is weighted by severity and comes with the directive to add.✓Starter✓Agency✓Pro
SSL / TLS auditpassiveCertificate chain, validity, SANs, cipher suites, TLS versions, forward secrecy, HSTS enforcement, and expiry alerts.✓Starter✓Agency✓Pro
DNS recordspassiveA, AAAA, MX, NS, TXT, CNAME, SOA inventory. DNSSEC enforcement check. Misconfiguration detection.✓Starter✓Agency✓Pro
Email securitypassiveSPF qualifier, DMARC policy strength, DKIM selector discovery, MTA-STS enforcement, TLS-RPT reporting, BIMI. 0–100 score with copy-paste fixes.✓Starter✓Agency✓Pro
Technology detectionpassiveFingerprints over 5,000 stacks from the Wappalyzer dataset: CMS, frameworks, libraries, CDN, analytics. Version extraction for CVE matching.✓Starter✓Agency✓Pro
Subdomain enumerationpassiveCertificate transparency logs (crt.sh) and AlienVault OTX passive DNS. Surfaces forgotten staging and backup subdomains.✓Starter✓Agency✓Pro
Third-party trackerspassiveEvery analytics, advertising and session-recording service the page pulls in, named and categorised, plus the consent manager if one is present. Reports what loads — whether it loads before consent needs a browser session and is not claimed.✓Starter✓Agency✓Pro
CVE detectionownership verifiedCross-reference detected technologies with NVD to surface known CVEs with CVSS scores and mitigations.✓Starter✓Agency✓Pro
Port scanningownership verifiedCommon and custom ports with concurrent scan. Service identification and banner grabbing. Requires ownership verification.✓Starter✓Agency✓Pro
Banner grabbingownership verifiedSSH, HTTP, FTP, SMTP, POP3, IMAP, MySQL service fingerprinting. Version extraction. Requires ownership verification.✓Starter✓Agency✓Pro