🛡

Context-Sensitive Security Grade

GuardPad adapts your security grade to your site type. A blog isn't judged like a banking app. Analyze headers, SSL/TLS, cookies, email security, and OWASP compliance — all from your pocket.

Context-Aware Grading 11 Security Headers Email Security OWASP Compliance
Download on App Store

Comprehensive Security Analysis

Professional-grade security scanning tools, designed for mobile.

URL Scan

Enter any URL and get a context-sensitive security grade in seconds. Your site type is detected automatically.

Security Headers

Analyze 11 security headers with site-type-aware weighting. CSP depth scoring, HSTS, COOP, COEP, CORP, and more.

Email Security

Grade SPF, DMARC, and DKIM individually. Detect spoofable domains with actionable DNS fix snippets.

Cookie Analysis

Grade cookie security: Secure, HttpOnly, SameSite, __Host- prefix, and session hygiene.

SSL/TLS Analysis

Check certificate validity, expiration, and cipher suite strength.

OWASP Compliance

Map every finding to OWASP Top 10:2025 categories. Know which risks you're covered for.

DNS & DNSSEC

Query all record types. DNSSEC validation, CAA grading, and DNS-only fallback for unreachable servers.

Quick Fix

Impact-sorted issues with server-specific code snippets for nginx, Apache, Express.js, and Caddy.

See It in Action

v1.3

What's New

Context-Sensitive Grading

Grades now adapt to your site type. A static blog isn't held to the same standard as a banking SPA. Five types detected automatically: static, SPA, API, CMS, and generic.

Email Security Analysis

SPF, DMARC, and DKIM records graded individually. Detect spoofable domains and get DNS fix snippets.

OWASP Top 10:2025

Every finding mapped to OWASP Top 10:2025 categories. See per-category coverage with compliance bars.

DNS-Only Fallback

When a web server is unreachable, GuardPad automatically analyzes DNS records and delivers a partial security grade. Works for mail-only domains.

Re-Scan Diff & Share Card

See exactly what changed since your last scan with inline grade change badges. Share amber-themed grade cards.

DNSSEC & CAA Grading

DNSSEC validation status and CAA record 4-tier grading. Trusted Types CSP detection with A+ grade boost.

Unlock PRO

One-time purchase. No subscription.

PRO

$5.99

One-time purchase

  • Unlimited scans
  • Batch URL scanning
  • Scan history & domain grouping
  • iPad compare mode
  • Quick Fix code snippets
  • Smart recommendations by site type
  • PDF, Markdown & grade card export
  • CORS tester & advanced DNS
Download on App Store

Ready to Secure?

Download GuardPad and start scanning today.

Download on App Store