Live Security Scan

Mailchimp vendor security report

Last scanned 16 hours ago

ISO 27001
90
Overall risk score

CVE Activity

4
Total CVEs
2
Last 90 Days
0
KEV Exposed
0Critical0High3Medium1Low

SSL / TLS

B
SSL Grade
Domain: mailchimp.com
  • mediumServer negotiated weak protocol: TLSv1.3.

DNS Security

Passing

No DNS issues found

Security Headers

C
Headers Grade
  • high
    header_no_hsts

    Strict-Transport-Security (HSTS) header is missing. Clients may connect over plain HTTP.

  • medium
    header_no_csp

    Content-Security-Policy header is missing. XSS attacks are less mitigated.

  • low
    header_no_xcto

    X-Content-Type-Options header is missing. MIME-sniffing attacks are possible.

  • low
    header_no_referrer

    Referrer-Policy header is missing. Sensitive URL fragments may leak to third parties.

Security & Breach News (last 12 months)

No security incidents reported in the last 12 months

Get weekly alerts when Mailchimp's risk score changes

Track score changes, new CVEs, and breach news automatically.

Start free monitoring - no credit card

Monitor your complete vendor portfolio

Get daily risk scores, breach alerts, and compliance reports for all your SaaS tools.

Start free - 30 day trial