Analyzer by Lusivision
Website Security Checker
The Website Security Checker reads the HTTP response we receive: transport (HTTPS and TLS), HSTS, CSP, framing and MIME sniffing headers, cookie flags, mixed content and version leakage. It also reads the domain's SPF, DMARC and CAA records and looks for a security.txt. Lusivision Security Score is computed from the response. This is not a penetration test, malware scan or vulnerability assessment.
Try
What it checks
Read from one honest fetch
- HTTPS and TLS certificate details from the socket
- HSTS, CSP, X-Frame-Options, X-Content-Type-Options
- Referrer-Policy, Permissions-Policy, COOP and CORP
- Cookie Secure, HttpOnly and SameSite flags
- Mixed content on HTTPS pages
- Exposed Server and X-Powered-By versions
- Redirects, including HTTPS to HTTP downgrades
- SPF, DMARC and CAA DNS records
- /.well-known/security.txt
Questions
Before you read the score
More checkers
Same fetch, other angles
- Website Performance CheckerTTFB, compression, caching, weight, lazy-loading and render-blocking assets from a real HTTP fetch.
- Accessibility CheckerAutomated checks for images, headings, forms, links, language and common ARIA mistakes.
- On-page SEO CheckerTitle, description, canonical, H1, structured data, robots.txt, sitemap, Open Graph and image alts.
- Privacy & Compliance CheckerTrackers, consent tooling, first-load cookies, third-party hosts, Google Fonts and embeds. Built with the GDPR in mind.
- Agent Readiness CheckerHow well AI agents can discover, read and use the site: content without JavaScript, real 404s, llms.txt, APIs, MCP. Powered by Is Agentic.
- Technology DetectorSignature-based detection of CMS, frameworks, e-commerce, payments, consent tools, analytics, CDN and hosting, with evidence.
Need a site built, not just measured? Talk to Lusivision or visit lusivision.com.
