Scan any website's security posture in seconds
SSL, security headers, CMS detection, open ports, weak configs, XSS & SQLi probes, admin panel finder — all in one ultra-professional dashboard.
Initializing scan engine…
Preparing modules
Scan Report
What we analyze
SSL / TLS Status
Certificate validity, protocol, HTTPS enforcement.
Security Headers
CSP, HSTS, X-Frame-Options, Referrer-Policy & more.
CMS Detection
WordPress, Shopify, Wix, Drupal, Joomla, Ghost.
Open Ports
Common ports surface check via fetch probes.
Weak Configs
Exposed .env, .git, debug, directory listing.
XSS Probe
Reflected XSS pattern test against query params.
SQLi Probe
Heuristic SQL-injection error pattern detection.
Admin Finder
Common admin / login panel paths discovery.
DNS & IP
Resolve via DNS-over-HTTPS, A / AAAA / MX / TXT.
robots.txt & sitemap
Crawl directives and exposed paths.
Tech Stack
Server, framework, language fingerprinting.
Cookie Audit
Secure / HttpOnly / SameSite analysis.
Built by Zeeshan Haider
ZHH Web Security Scanner is crafted by Zeeshan Haider (Z·H·H) — a security enthusiast & developer. Join the official WhatsApp channel for updates, tools, and tutorials.
Join WhatsApp Channel