Threat examples and compliance framing adjust per vertical. Re-scanning mn.gov preserves your current scores.
Enter a domain, URL, or email address to generate a compliance report.
Overall Compliance Rating
mn.gov has gaps that may weaken protection of closing and customer financial data under the FTC Safeguards Rule. Prioritize the remediation plan below before relying on this configuration as a defensible posture.
A similarly-named company has 2 breach notices on file, but the domain match is a name-similarity guess, not confirmed. Verify independently before citing.
This tool uses a weighted algorithm focused on the FTC Safeguards Rule:
-all vs exploitable ~all) and DMARC enforcement including explicit sp=reject subdomain policy and np=reject for non-existent subdomains.mode=enforce (not testing/none), plus TLS-RPT and DNSSEC signals. DNS host, IPv6 dual-stack, and BIMI are shown for guidance and are not primary score drivers.lyncdiscover (Microsoft Lync legacy targets are Info only).Without strict DMARC (p=reject) and SPF (-all), attackers can email clients as your office:
closing@mn.gov or wire@mn.gov email changes payoff wiring instructions hours before a closing.Unlock the full report for every control — MTA-STS, TLS-RPT, DNSSEC, HSTS, CSP, clickjacking, CAA, security.txt, and endpoint risk — each with named incidents and remediation steps.
The paid report adds a step-by-step playbook: Have I Been Pwned check (when you audit by email), MFA rollout, password-manager guidance (we suggest Proton Pass), and Microsoft 365 / Google Workspace compromised-credential settings — plus our breach-monitoring guide if exposure is found.
Your infrastructure reveals specific vulnerabilities regarding the FTC Safeguards Rule. Unlock the full report to access actionable remediation steps, granular DNS data, and the tools below.
What's included in the full report ($99)
Everything below unlocks immediately after checkout—no separate subscriptions.