Unified Domain Report
One domain → DNS, WHOIS, SSL, email security & HTTP headers in one scored report.
Enter a target
e.g. example.com — press ⏎ / ⌘⏎
What is Unified Domain Report?
The Unified Domain Report gathers a domain's DNS records, WHOIS data, SSL/TLS certificate, email security (SPF/DKIM/DMARC) and HTTP security headers in a single query and produces a 0-100 health score.
Each section is scored individually with actionable advice, so overlooked risks — an expiring certificate, a missing DMARC policy, weak security headers — surface at a glance.
Every report gets a shareable permalink and can be exported to PDF, which makes it useful for handovers, client reporting or an audit trail.
Frequently Asked Questions
9 questionsHow is the 0-100 score calculated?
The score is a weighted sum of five categories: SSL/TLS (25), email security (25), DNS (20), HTTP security headers (15) and domain health/WHOIS (15). Each category is graded pass/warn/fail internally.
Can I share the report?
Yes. Every report is saved under a permanent link anyone can open, and you can export it via PDF/Print.
Does a low score mean my site is hacked?
No. The score measures configuration best practices, not compromise. Low scores usually point to missing DMARC, absent security headers or an expiring certificate.
How fresh is the data?
All checks run live when the report is generated. Sub-queries may be briefly cached (DNS ~60s, WHOIS a few hours); the generation time is shown on the report.
How long does a report take?
Typically 10-25 seconds. Most of it goes to WHOIS and SSL: WHOIS chains raw TCP 43 queries from IANA down to the registrar, and SSL performs a real TLS handshake. DNS and email checks run in parallel, so they don't drive the total.
Does the report still generate if one section fails?
Yes. Each section runs independently; a failure marks only that section as "could not check" and removes its weight from the score. A WHOIS server timing out doesn't cost you the whole report.
Does re-running a report replace the previous one?
No — each report keeps its own permalink, so you can compare before and after a change, such as tightening DMARC.
Should I aim for 100?
No. Some items don't apply to every setup: a domain that receives no mail is correct to have no MX or DKIM, and a static site may not need a CSP. Treat the score as a checklist that surfaces what you missed, not a target.
Does it work on competitors' domains?
Yes — every check reads public DNS and TLS data and needs no account on the target. Only externally visible configuration is inspected; nothing attempts unauthorized access.