Free Security Tools
Specialized security scanners for testing specific aspects of your website's security configuration.
SSL Checker
Free online SSL checker. Scan any website to verify SSL/TLS certificate validity, check expiry dates, TLS version support, cipher suite strength, and HSTS configuration. Get instant results with step-by-step fix recommendations.
Security Headers Checker
Free online security headers checker. Scan any website to analyze HTTP security headers including CSP, HSTS, X-Frame-Options, Referrer-Policy, and Permissions-Policy. Detect missing or misconfigured headers and get specific fix recommendations.
CORS Checker
Free online CORS checker. Scan any website or API to test Cross-Origin Resource Sharing configuration, detect dangerous origin reflection, verify credentials handling, and identify misconfigured CORS policies that expose your data to unauthorized access.
Cookie Checker
Free online cookie checker and scanner. Scan any website to discover all cookies, check Secure, HttpOnly, and SameSite flags, verify cookie prefixes, and get actionable security recommendations.
Email Security Checker
Free online email security checker. Scan any domain to verify SPF, DKIM, and DMARC records, detect email spoofing vulnerabilities, and check policy strictness. Get instant DNS lookup results with step-by-step fix recommendations to protect your domain from phishing.
DNS Security Checker
Free online DNS security checker. Scan any domain to validate DNSSEC signatures, check CAA records, detect subdomain takeover risks, verify DANE/TLSA records, and test MTA-STS policy. Get instant DNS security analysis with actionable fix recommendations.
CSP Checker
Free online CSP checker. Scan any website to analyze Content Security Policy headers, detect dangerous directives like unsafe-inline and unsafe-eval, find missing policies, and identify misconfigurations that expose your site to XSS attacks. Get specific directive-level fix recommendations.
HSTS Checker
Free online HSTS checker. Scan any website to verify Strict-Transport-Security header configuration, check max-age value, includeSubDomains directive, preload eligibility, and HTTP-to-HTTPS redirect chain. Get instant HSTS analysis with specific fix recommendations.
Website Vulnerability Scanner
Free online website vulnerability scanner. Scan any website to detect outdated JavaScript libraries with known CVEs, exposed admin panels, directory listing, source map leaks, sensitive file exposure, and dangerous JavaScript patterns. Get instant results ranked by severity with fix instructions.
Website Security Checker
Free online website security checker. Scan any website to analyze SSL/TLS, HTTP security headers, DNS configuration, email authentication, cookie security, and content vulnerabilities — all in one scan. Get instant pass/fail results with step-by-step fix guidance for every issue found.
Robots.txt & Security.txt Checker
Free online robots.txt checker. Scan any website to validate robots.txt directives, find SEO issues and sensitive path exposure, and verify security.txt follows RFC 9116. Get instant analysis of crawl directives and responsible disclosure configuration with actionable recommendations.
Mixed Content Checker
Free online mixed content checker. Scan any HTTPS website to find images, scripts, stylesheets, and iframes loaded over insecure HTTP. Detect active and passive mixed content that weakens your HTTPS security and triggers browser warnings. Get instant results with fix instructions.
Run All Security Checks at Once
Our full scanner runs 62 security checks covering TLS, headers, CORS, cookies, DNS, and more.
Run Full Security ScanNot sure which tool fits your needs? Compare the top website security scanners →