Find your exposed security risks before attackers do.
Scan your domain for website, SSL, DNS, email, and public exposure issues. Get a clear security score, plain-English findings, and a report your team can act on.
What iPentesting checks
Safe, non-invasive public-facing checks — no exploits, no aggressive scanning.
SSL & TLS
Certificate status, expiration, and configuration
Security Headers
HSTS, CSP, X-Frame-Options, and more
DNS Security
Records, redirects, and misconfigurations
Email Security
SPF, DKIM, and DMARC validation
Subdomains
Public subdomain discovery
Public Exposure
Safe signals of exposed systems
Plain-English risks your team can act on
We translate technical signals into business impact and practical fix steps — not scary jargon.
Missing DMARC Record
MediumYour domain does not have a DMARC record. Attackers may spoof your domain in phishing emails.
Recommended fix: Add a DMARC TXT record and start with p=none before moving to quarantine or reject.
How it works
Enter Your Domain
Start with your business website or client domain.
Run a Safe Security Check
Non-invasive checks of website, SSL, DNS, email, and exposure signals.
Review Your Risk Score
See your overall score and the issues that matter most.
Fix What Matters
Plain-English remediation steps your team can act on.
Monitor Over Time
Paid plans watch your domain and alert you when risks change.
Security Report
example.com
72
Medium RiskDownload a report your team can act on
Executive summary, categorized findings, remediation roadmap, and next-scan recommendations — ready for developers, IT providers, or clients.
View Sample ReportBuilt for teams who need clarity
Small Businesses
Affordable visibility without a full pentest budget.
Agencies & MSPs
Client-ready reports and white-label branding on Premium.
Government Contractors
Organize readiness documentation before formal assessment.
Simple, transparent pricing
Start free. Upgrade when you need full reports, alerts, and monitoring.
Free
For quick checks and basic visibility.
- 1 domain
- Monthly basic scan
- Basic security score
- Top 3 findings
- Limited fix guidance
Standard
Clear security reports and ongoing monitoring.
$290/year
- 3 domains
- Weekly scans
- Full findings
- PDF reports
- Email alerts
- OWASP checklist
- SSL, DNS, email & website checks
Premium
For agencies and MSPs — white-label reports, multi-client dashboards, daily monitoring, and GovCon readiness tools.
$990/year
- 15 domains
- White-label reports
- Client dashboard
- Daily monitoring
- Team access (5 users)
- GovCon readiness packet
- Vendor questionnaire generator
- Incident response plan generator
Trusted by security-minded teams
“We finally have a security report our clients understand — without the hacker-movie vibe.”
Agency Owner
Digital Marketing Agency
“The DMARC and SSL alerts alone paid for Standard within the first month.”
IT Consultant
MSP Partner
“Clear score, clear fixes. Our team knew exactly what to prioritize.”
SaaS Founder
B2B Software
Frequently asked questions
Yes. iPentesting performs safe, non-invasive public-facing checks only. We do not run exploits, brute force credentials, or perform aggressive scanning that could harm uptime.
Scan your domain for free today
Get your security score and top findings in minutes. No credit card required.