Descrizione
Audit deterministico security posture di un dominio: DNS lookup SPF/DKIM/DMARC + ispezione certificato SSL (issuer/expiry/SAN/protocollo) + redirect chain HEAD (max 10 hop, detect open-redirect) + HSTS/security headers. Score 0-100 con findings prioritizzati (critical/high/medium/low) + remediation actionable. Output: { score, findings[], spf, dkim, dmarc, ssl, redirects[], headers }. Use case: pre-onboarding due diligence security cliente B2B, monitoring cron settimanale con alert su drop score, compliance check pre-migrazione DNS, report stakeholder non-tecnici, audit posture post-incident.
