PFProveFixed
Menu

Features

Public checks with practical explanations

The scanner turns common public security signals into a score, a risk level, and suggested fixes that are easy to hand to a site owner, host, or developer.

TLS certificate

Detects whether the website can be reached securely over HTTPS with a valid certificate.

HTTPS redirect

Checks whether visitors using HTTP are sent to the encrypted version of the site.

SPF record

Looks for DNS authorization that helps prevent spoofed email using your domain.

DMARC record

Checks whether the domain publishes a policy for failed email authentication.

HSTS header

Reviews whether browsers are instructed to keep using HTTPS on future visits.

CSP and framing headers

Highlights common browser protections that reduce injection and clickjacking risk.

Ready to review a domain?

Start with a public scan, then prioritize the fixes that matter.

Start scan