All monitor types
Security checks

SSL/TLS Security monitoring

A graded security assessment (A+ to F) across TLS/SSL config, certificate trust, HTTP headers and more — with a scoring mode you choose.

Every SSL/TLS Security monitor runs on the same spine as the rest of PulseTrace — probed from each region you pick, scored on every check, and streamed into one timeline where incidents open on their own, anomalies surface without a threshold to guess, and reports are generated for you. Point it at a target, choose an interval, and it's watched.

What each check verifies

  • TLS/SSL configuration and certificate trust (CAA issuer alignment, OCSP revocation)
  • HTTP security headers, cookies, CORS, content, redirects, exposure and scripts
  • One rolled-up A+–F grade — see Security posture for the scoring modes

The panel on the right is the real create-monitor screen — it fills itself in with a SSL/TLS Security example, exactly what you'd type.

When to use it

For your public HTTPS surfaces — the app, the API, the marketing site, the login page — when 'is it up' isn't enough and you want to know the TLS configuration and security headers are still what security signed off on. Run it on the endpoints an auditor or a customer's security team would test.

What an alert looks like

app.example.com security grade dropped A → C — Strict-Transport-Security header missing; TLS 1.0 enabled.

Questions about SSL/TLS Security monitoring

What is the scoring mode?
Low grades transport TLS only; Medium adds HTTP security headers; High counts everything, including cookies, CORS and redirects. Whatever the mode excludes is still checked and shown as report-only.
Will it alert on every finding?
It alerts on a grade change (and on certificate expiry); individual findings are listed on the monitor so you can fix them in order.
Can customers see the grade?
Yes — a trust page publishes the grade alongside uptime for the security-conscious buyer.