Transport
HTTPS availability and HTTP-to-HTTPS redirect behavior.
DIGITAL THREAT ASSESSMENT & SECURITY INTELLIGENCE
Assess HTTPS, redirects, DNS, browser security headers, cookies, CORS exposure and security-contact hygiene without exploiting the target.
Enter a public domain you are authorized to assess.
Overwatch Sentinel performs low-impact external checks only. It does not attempt exploitation, credential attacks, or destructive testing.
Waiting for a target
No scan completed yet
Prioritized changes based on this scan. Estimated score gains use the same weighting as the current scanner and should be confirmed by rescanning after changes are deployed.
HTTPS availability and HTTP-to-HTTPS redirect behavior.
CSP, HSTS, nosniff, referrer, permissions and cross-origin policy headers.
Secure, HttpOnly and SameSite attributes plus obvious wildcard CORS exposure.
A, AAAA, MX, TXT and CAA visibility using DNS-over-HTTPS.
Server and technology headers that reveal unnecessary implementation details.
Checks for /.well-known/security.txt and robots.txt availability.