Features

What MSPs get in SecurityScore.me

A compact overview of the platform: multi-customer posture, Microsoft 365 and Entra assessment, external attack surface, email and web security, certificate monitoring, findings, reporting, and optional Security Operations.

Capability overview

9 areas that cover the product

Short summaries first. Use Platform for architecture and Solutions for MSP workflows.

MSP workspace

Run every managed customer from one organization.

  • Multi-customer workspaces
  • Microsoft tenants, domains, and websites per customer
  • Filters and saved views
  • Owner, admin, analyst, technician, and viewer roles

Microsoft 365 and Entra

Read-only posture assessment across connected tenants.

  • MFA and privileged-role signals
  • Conditional Access and security defaults
  • Guest access and licensing context
  • Secure Score and sync health
  • Identity risk where permissions and licensing allow

External attack surface

Find what is exposed on the internet for each customer, non-invasively.

  • Passive subdomain and asset discovery via Certificate Transparency and DNS
  • Subdomain-takeover detection on dangling DNS records
  • Exposed services and risky open ports (connect-only, nothing sent)
  • Web-app exposure: exposed .git/.env, backups, debug endpoints, directory listing, admin panels
  • Certificate Transparency monitoring for new, unexpected, or expiring certificates

Email and domain security

DNS-observable email authentication and domain hygiene.

  • SPF hardening, graded DMARC, DKIM key inspection, BIMI
  • MTA-STS policy, DANE, Null MX, and MX resolvability
  • DNS, DNSSEC, MX, TLS-RPT, and CAA records checked

Web and TLS posture

Externally observable website and transport security.

  • HTTPS, TLS configuration, certificate validity and expiry
  • HSTS, CSP, and security headers
  • Cookies, CORS, security.txt, and technology fingerprints

Findings, monitoring and reporting

Prioritize posture issues and track meaningful change.

  • Severity-ranked findings with evidence and recommendations
  • Scheduled monitoring, drift awareness, and a posture-score forecast
  • Certificate-expiry alerts and a weekly per-customer risk digest
  • Source health that avoids false-safe empty results
  • Customer-ready printable reports for reviews and QBRs

Security Operations

Optional MSP-only workspace for operational Microsoft signals.

  • Defender alerts and incidents
  • Entra risky users and sign-ins
  • Acknowledgement, assignment, notes, escalation, and SLA
  • Certificates tab and internet-exposed services alongside the alert list
  • Outbound customer updates, without a customer portal

Critical CVEs

Exposure context from detected technologies, kept separate from incidents.

  • Technology fingerprinting
  • NVD, CISA KEV, and EPSS context
  • Alerts when a newly listed CISA KEV vulnerability affects a customer
  • Freshness, confidence, and safe rescan
  • Separate from active security incidents

Safeguards

Built for read-oriented, non-destructive assessment.

  • Read-only Microsoft permissions
  • Approved assets only and SSRF protections
  • Passive intelligence and connect-only port probes, no bytes written
  • No automatic remediation
  • No exploit execution

How the layers stay separate

Posture findings, Security Operations alerts, and Critical CVE exposure are distinct product layers. See how they fit together on the platform page.

Explore

Next steps

See these capabilities in your MSP workflow

Request a demo or explore solutions built around service delivery.