Mission control for
your website.
OrionCmd watches uptime, certificates, DNS, email health and security exposure — from the outside, around the clock, in plain English. Nothing to install, nothing intrusive.
Seven stars. Seven layers under watch.
The hunter's brightest stars, mapped to what OrionCmd watches on every site you add.
Is the site up and answering? Checked around the clock.
Certificates graded and expiry tracked before anything lapses.
Nameservers, records and registration watched for silent changes.
The red giant. When something needs you, you hear about it fast.
SPF, DKIM and DMARC watched so your mail keeps landing.
Headers, stack and known issues — observed, never attacked.
The brightest star. One composite grade for overall exposure.
Full-sky coverage.
Twenty checks across three watch stations. All passive — your sites never feel a thing.
HTTP Availability
Millisecond-precision status & keyword checks with intelligent anti-flap detection.
DNS Resolution
Continuous mapping of A, AAAA, CNAME, and MX records to ensure reachability.
SSL / TLS Expiry
Precise expiration tracking so your certs never lapse unexpectedly.
TLS Grading
Deep analysis of protocols, ciphers, and chains yielding A+ to F security grades.
Domain Expiry & Integrity
Track RDAP/WHOIS limits and detect unauthorized nameserver or delegation changes.
Email Deliverability
MX record validation and real-time Spamhaus / Barracuda DNSBL checking.
Email Authentication
Basic (SPF/DMARC) and Pro (DKIM, DMARC reject, MTA-STS, TLS-RPT, BIMI) coverage.
Search Indexability
Monitor robots.txt and noindex headers to protect your SEO rankings.
Defacement Detection
Cryptographic homepage hash diffing to instantly alert you of unauthorized changes.
Threat Reputation
Continuous cross-referencing against Google Web Risk & Safe Browsing.
Passive Web Security
Validation of CSP, HSTS, XFO headers, secure cookie flags, and mixed content.
Stack Fingerprinting
Identification of 50+ underlying technologies, frameworks, and CMS versions.
Vulnerability & CVE Mapping
Automated OSV.dev integration to match your stack against known vulnerabilities.
Performance Audit
Deep Lighthouse profiling via PageSpeed Insights for speed and accessibility.
Non-Intrusive Scan
Safe, targeted nuclei templates that find misconfigurations without causing harm.
Passive Web Scan
OWASP ZAP bounded spidering and passive analysis of an authorized target — no active attack payloads.
Automated Client Reports
Beautiful PDF/HTML exports with AI-generated incident explanations.
Public Status Pages
Subscriber notifications and transparent downtime reporting for your users.
Operator Alerting
Instant Slack, Discord, and Webhook dispatches with configurable quiet hours.
Auth-Gated Scans
Strictly enforced signed scope authorizations and ownership affirmation.