SecureMailScopepassive mail transport assessment
How secure is your mail transport?
Drop an SMTP, IMAP or POP3 packet capture and get an instant, passive audit:
STARTTLS behaviour, TLS versions and cipher suites, certificate health,
forward secrecy, ML-driven session anomalies, and a compliance mapping.
No capture to hand? These synthetic scenarios run the same pipeline and
produce a full server-rendered report.
What it measures, and what it will not claim
- STARTTLS
- Advertised, offered and accepted; stripping is detected rather than assumed.
- TLS
- Version, cipher suite, key exchange and forward secrecy, observed from the handshake.
- Certificates
- Chain, expiry, self-signature, name match — and, under TLS 1.3, the fact that they were encrypted.
- Scoring
- Only sessions with a completed handshake are scored. An incomplete one is reported as unmeasured, never as a pass.
- Coverage
- Every score is shown with the evidence it rests on. Below 50% coverage the letter grade is withheld rather than guessed.