SSL · Email · Headers — one civil scan

Free SSL checker.
Know your site's security in seconds.

Test your SSL/TLS certificate, email authentication (SPF, DKIM, DMARC) and HTTP security headers — and get a plain-English A+ to F grade. No signup. No sales call. Just receipts.

Full goes through every cipher suite & header.
Free scan — no registration required.
No signup needed Results in seconds A+ to F grading
myssl ▸ ~/scan/acmecorp.com
Grade
Score
—/100
TLS
1.3
Time
Why MySSL

Everything you need to keep TLS healthy.

Built for engineers and security teams who want straight answers — not vendor dashboards. Scan once, or wire up continuous monitoring in two clicks.

A+ to F, fairly graded

Cipher suites, protocol versions, certificate chain, OCSP, CT logs and known vulnerabilities — scored the same way the public test suites do.

Expiry alerts that don't miss

We ping you 30, 14 and 7 days before renewal, then again on the day. Skip the spreadsheet roulette.

Continuous monitoring

Re-scan as often as every minute. Track grade history, catch regressions the day they ship, keep an audit trail.

Where you already work

Slack, Discord, Telegram, email, custom webhooks. One scan, alerts where your team will actually see them.

What our SSL checker tests

A complete SSL/TLS & web security test in one scan

Most SSL checkers only look at certificate dates. MySSL.info goes deeper — we run the same checks a professional auditor would, then translate them into plain English.

SSL certificate & chain

Validity dates, issuer trust, hostname matching, SAN coverage, chain completeness, weak signature algorithms (SHA-1), and certificate transparency log presence.

TLS protocols & ciphers

Support for TLS 1.2 and TLS 1.3, forward-secret cipher suites, deprecated protocols (TLS 1.0/1.1, SSLv2/3), and post-quantum key exchange (ML-KEM).

Known vulnerabilities

Heartbleed, POODLE, BEAST, FREAK, Logjam, DROWN, ROBOT, Sweet32, LUCKY13 — every CVE that has shaped TLS in the last decade.

HTTP security headers

HSTS, Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Referrer-Policy and Permissions-Policy — with fix recommendations for each.

Email authentication

SPF, DKIM, DMARC, MTA-STS and DANE — so attackers cannot spoof your domain and your mail actually lands in the inbox.

Compliance frameworks

Map every finding against PCI DSS, ISO 27001, HIPAA, SOC 2, GDPR, DORA, NIS2, NIST CSF and Cyber Essentials.

Frequently asked questions

SSL checker FAQ

Is MySSL.info really free?

Yes — every SSL scan, security header test, SPF/DKIM/DMARC check and tool on this site is free without signup. Optional accounts add continuous monitoring, alert routing and a longer history window.

How is the A+ to F grade calculated?

We grade against the same rubric used by the well-known public TLS test suites — certificate validity, key strength, protocol versions, cipher suites, forward secrecy, and known vulnerabilities — then layer on HTTP security headers and email authentication checks.

Can I scan internal or non-standard ports?

Yes. Add the port in the form (e.g. example.com:8443). Scans work for any host reachable over the public internet.

Will MySSL.info store my scan?

Public scans are cached for 24 hours so repeat checks on the same domain return instantly. With an account, your scan history is stored privately for trend analysis and compliance audits.

How do I get notified before a certificate expires?

Add the domain to your dashboard. We send expiry alerts at 30, 14 and 7 days, then again on the day — via email, Slack, Discord, Telegram or webhook.

Does it support post-quantum cryptography (PQC)?

Yes. The TLS scan detects ML-KEM hybrid key exchange (X25519MLKEM768) on TLS 1.3, and the PQC readiness checker gives a dedicated quantum-safe verdict.

Read the full FAQ →