app.authorized.by/api/public
https://app.authorized.by/api/public/mcp
69
trust
0.55
confidence
medium
risk
trust-2026-08-12.2
observed 2h ago
Why this score
| tls_present_and_valid | +12 |
| reachable | +6 |
| mcp_capabilities_discoverable | +4 |
| headers.missing_hsts | -3 |
Findings (1)
| low | No Strict-Transport-Security header headers.missing_hsts @ 1.0.0 |
Evidence (7)
| Type | Observed | SHA-256 |
|---|---|---|
| dns_resolution_observation | 2h ago | a02738d3935e45a9… |
| http_response_observation | 2h ago | 9981f7d922f75bdc… |
| availability_observation | 2h ago | fae67ace6a3a0a6d… |
| tls_certificate_observation | 2h ago | 72117de141103c29… |
| oauth_metadata_observation | 2h ago | a925f98f0e3812f1… |
| mcp_protocol_observation | 2h ago | e9c91450200e8ae4… |
| mcp_capability_observation | 2h ago | 121aceb66e84dea5… |
Every record is append-only and content-hashed. Corrections supersede; nothing is overwritten.
Operate this service?
Prove control of app.authorized.by/api/public to correct the record and request a rescan after fixing a finding. One DNS record — no account needed.