Domain Security Review ドメイン診断
One domain in — DNS, email authentication, TLS, HTTP headers, CAA and HSTS checked in one pass by six of the site’s tools and scored together. Each finding links to the standalone tool with the domain pre-filled.
A bare domain (example.com). Subdomains work for TLS and headers;
SPF / DMARC / CAA are looked up where the records actually live.
Does the domain resolve, with redundant name servers and a mail exchanger? Open DNS Record Lookup →
Waiting for a run.
SPF, DKIM and DMARC — can this domain be spoofed? Open Email Security Checker →
Waiting for a run.
Trusted chain, name match, expiry and key strength on port 443. Open SSL Checker →
Waiting for a run.
HSTS, CSP, X-Content-Type-Options, framing, Referrer-Policy, Permissions-Policy. Open HTTP Security Headers Grader →
Waiting for a run.
Which CAs may issue for the domain, and is HSTS preload-eligible? Open CAA & HSTS Checker →
Waiting for a run.
DNSSEC, MTA-STS and security.txt — informational, not scored. Open Domain Security Posture Scanner →
Waiting for a run.
A Markdown report of every finding (paste into a ticket), plus the case artifacts — IPs, name servers, mail hosts, certificate names — as CSV or STIX 2.1.