Inspectanywebsite,API,ornetwork.
Scan the full stack — headers, security, TLS, DNS, SEO and tech — over real connections, streamed live, with no account and nothing stored about your targets. Every scan runs fresh.
$ inspect https://example.com
Three inspectors. One stack.
Point WebInspect at anything with an address — a site, an endpoint, or a hostname — and read it end to end.
Watch a scan resolve.
DNS resolves, the TLS handshake completes, the status lands, then headers stream in and security directives light up — green when present, amber when missing. This is exactly the shape of a real run.
- 01Real HTTP over the wire
- 02Header-by-header, as they arrive
- 03Deterministic security grading
Sample report · illustrative data
A full report, at a glance.
Every scan resolves into scored sections — security, performance, SEO — with a connection-timing waterfall and fifteen-plus expandable panels. Read the verdict in a second; drill in when you need to.
See it on a real siteNo accounts. No storage. No fabrication.
No signup
Nothing to create. Open a URL and go.
Fresh every scan
No cache of your targets. Each run hits live.
Nothing stored
Stateless — no accounts, no history, no logs kept.
Heuristic scoring
Deterministic rules, not an LLM guessing.
Common questions
What WebInspect does, what it costs, and what happens to your data. Short answers, no fine print.
- What is WebInspect?
- WebInspect is a free developer tool that inspects any website, API or network from your browser. Paste a URL or hostname and it runs a live, server-side scan covering HTTP and security headers, the TLS certificate chain, DNS records, cache and compression posture, performance timings, on-page SEO and the detected tech stack — then streams the report back as it completes.
- Is WebInspect free?
- Yes. WebInspect is completely free to use. There is no paid tier, no trial, and no credit card. Every inspector — Website, API, Network and Compare — is available without limits for interactive use.
- Do I need to sign up or create an account?
- No. There is no account, no login, and no email required. You can start an inspection immediately — just paste a URL and run it.
- Does WebInspect store my scans or the sites I inspect?
- No. WebInspect is stateless by design — there is no scan history and no database of your results. Each scan runs fresh and the report lives only in your current browser session; reloading or closing the page discards it. Analytics store only a short salted hash prefix derived from the request IP, never the raw IP and never the target you scanned.
- What can I inspect with it?
- Four tools cover the stack: the Website inspector reads HTTP/security headers, TLS, DNS, cache, compression, performance and SEO; the API inspector tests REST, GraphQL, WebSocket and SSE endpoints; the Network inspector analyses DNS propagation, ASN routing, CDN, geolocation, blacklists and email posture; and Compare diffs any two targets side by side with winner scoring.
- Do I need to install anything?
- No. WebInspect runs entirely in the browser and executes each scan server-side, so there is nothing to install or configure. It works in any modern browser on any operating system.
Run your first inspection.
No signup. No history. Zero setup. Paste a URL and read the full stack in seconds.
Got an idea?
Prompt the whole product into existence.
WebInspect itself was built on biela.dev — describe what you want in plain words and watch it become a real, hosted app. No boilerplate, no setup.
Build yours on biela.dev