// AI vulnerability scanner
Passive Website Security Scanner & AI-Assisted Guidance
Review publicly observable security headers, TLS, cookies, email authentication records, server disclosure, and exposed-path configuration. Potential findings include practical remediation guidance for human review. Use this tool only on websites you own or are explicitly authorized to assess.
Need additional monthly scan capacity?
Free includes 1 scan/month. Pro provides 100 scans/month plus access to additional paid tools, subject to the current plan terms.
Review Pro access →Frequently asked questions
What does the vulnerability scanner check?
It reviews publicly observable HTTP security headers, TLS and certificate posture, cookie flags, email authentication records that can be discovered without private selectors (SPF and DMARC), and common exposure signals, then prioritizes potential findings by risk.
Is the scan safe and passive?
The scanner is designed to read publicly available responses and configuration without intentionally exploiting or modifying the target. You must confirm that you own the site or are explicitly authorized to assess it.
How many free scans do I get?
One scan per month is free. Pro raises the limit to 100 scans per month with history and exports.
What are AI countermeasures?
For applicable findings, the scanner can provide prioritized, plain-language remediation guidance and configuration suggestions for your review. Validate every change in your environment before deployment.