rotunda.bullpenstrategygroup.com
https://rotunda.bullpenstrategygroup.com/mcp
67
trust
0.55
confidence
medium
risk
trust-2026-08-12.2
observed 2d ago
Why this score
| tls_present_and_valid | +12 |
| mcp_requires_authentication | +10 |
| tls.cert_expiring_soon | -8 |
| reachable | +6 |
| headers.missing_hsts | -3 |
Findings (3)
| medium | TLS certificate expires in 18 days tls.cert_expiring_soon @ 1.0.0 |
| low | No Strict-Transport-Security header headers.missing_hsts @ 1.0.0 |
| info | CORS allows any origin cors.wildcard_origin @ 1.0.0 |
Evidence (6)
| Type | Observed | SHA-256 |
|---|---|---|
| dns_resolution_observation | 2d ago | 8116633f11b792bd… |
| http_response_observation | 2d ago | a1a10fd7aebb6e4c… |
| availability_observation | 2d ago | 63dc57a8dcfb3a9b… |
| tls_certificate_observation | 2d ago | b433c565c7f98542… |
| oauth_metadata_observation | 2d ago | 453feb29e6495c6c… |
| mcp_protocol_observation | 2d ago | 5f4c66c82509bed4… |
Every record is append-only and content-hashed. Corrections supersede; nothing is overwritten.
Operate this service?
Prove control of rotunda.bullpenstrategygroup.com to correct the record and request a rescan after fixing a finding. One DNS record — no account needed.