# SiteSecurityScore > SiteSecurityScore is a website security header scanner and analyzer. It provides an API to scan any website and get a detailed security report covering HTTP security headers, TLS configuration, DNS security, and more. SiteSecurityScore helps developers and security professionals audit their web applications for security misconfigurations. The API accepts a URL and returns a comprehensive security analysis with a letter grade (A+ to F), individual header assessments, and actionable recommendations. ## API Documentation - [API Docs (plain text)](https://sitesecurityscore.com/api/docs): Full API reference in plain markdown (recommended for agents) - [API Docs (web)](https://sitesecurityscore.com/api-reference): Interactive API reference page - [OpenAPI Spec](https://sitesecurityscore.com/openapi.json): Machine-readable OpenAPI 3.0 specification - [Pricing](https://sitesecurityscore.com/pricing): API plans and rate limits ## API Quick Reference - [Base URL](https://sitesecurityscore.com/api-reference#base-url): https://sitesecurityscore.com/api - [Authentication](https://sitesecurityscore.com/api-reference#authentication): API key via `x-api-key` header (prefix `sss_`) - [Scan Endpoint](https://sitesecurityscore.com/api-reference#scan-website): `POST /api/v1/scan` with JSON body `{"url": "https://example.com"}` ## Learning Resources - [Learning Center](https://sitesecurityscore.com/learning-center): Guides on all HTTP security headers - [CSP Guide](https://sitesecurityscore.com/learning-center/content-security-policy): Content Security Policy reference - [HSTS Guide](https://sitesecurityscore.com/learning-center/strict-transport-security): Strict Transport Security reference - [TLS Security](https://sitesecurityscore.com/tls-security-guide): TLS configuration guide - [DNS Security](https://sitesecurityscore.com/learning-center/dns-security-guide): DNS security analysis guide ## Free Tools - [CSP Generator](https://sitesecurityscore.com/tools/csp-generator): Generate Content Security Policy headers - [HSTS Generator](https://sitesecurityscore.com/tools/hsts-generator): Generate Strict Transport Security headers - [Permissions Policy Generator](https://sitesecurityscore.com/tools/permissions-policy-generator): Generate Permissions Policy headers - [CORS Generator](https://sitesecurityscore.com/tools/cors-generator): Generate CORS headers - [Browser Extension](https://sitesecurityscore.com/tools/browser-extension): Chrome extension for instant security header checks ## Optional - [FAQ](https://sitesecurityscore.com/faq): Frequently asked questions - [Privacy Policy](https://sitesecurityscore.com/privacy-policy): Privacy policy - [Terms of Service](https://sitesecurityscore.com/terms-of-service): Terms of service