TLS configuration grading updated
TLS configuration monitors and the free TLS scanner can now detect hosts that still accept TLS 1.0 or 1.1, or NULL and anonymous cipher suites. Before, those probes failed on our side, so such hosts looked better than they are. A host that still accepts them now grades C or D; for example, a site behind Cloudflare with its default minimum TLS version of 1.0.
Scoring for legacy protocols now matches the rubric published on the TLS scanner page.
The "Every week" check interval has been retired. Monitors that were set to weekly now run once a day.