Hey Guy, i built a website/domain security scanner tool. SSl/TSL, WAF detection, Secure Cookies, HSTS, DKIM/DMARC, DNSEC, etc..
I think the security score are gimicky (ignore that i have a header score I will be removing that).
You can just use it as a one-off tool to scan/check, you can schedule scans, get notified of changes (unexpected or expected), show proof of remediation, auto JIRA issue creation (with PDF attaching).
Thoughts? I would love some comments/usage/feedback. internetsecure.org