Domain Security Scan
Check SSL, CAA, HTTP headers, SPF, DMARC, robots.txt, sitemap, canonical, Open Graph, and schema signals from one domain entry.
Technical response details (optional)
Use the plain-language cards above for decisions. This optional section is for implementation context and may be incomplete when a public endpoint is blocked or rate-limited.
Run a scan to view technical response details.
B2B diagnostic report model
Website and domain diagnostics
Public website checks connect HTTPS/SSL, redirects, headers, DNS, robots/sitemap, canonical/noindex, structured data, and social preview signals.
Client-safe report
Share findings without leaking raw technical material
Use Safe Copy or this page's summary when sending results to a client, vendor, developer, or support team. Raw headers, credentials, tokens, cookies, private addresses, email local-parts, and oversized payloads should stay out of client-facing copy.
Check my website/domain
What this checks
Public DNS, HTTP, HTTPS, certificate, redirect, header, IP/ASN, or domain configuration signals.
Limits
What this cannot check
It cannot perform credentialed vulnerability testing, scan private hosts, bypass access controls, or certify complete security.
Read results
How to use the output
Treat results as review signals for this browser/session or public target. Re-test after one change, then use Safe Copy or notes that avoid raw identifiers.