← Back to Services & Pricing
Security Snapshot
Free
Capture & qualify — one verified domain, one scan.
A free, passive, non-intrusive snapshot of what your company exposes to the public internet. It's designed to give you a first, honest picture — not to replace a manual penetration test.
What's included
- One verified corporate domain, one scan execution
- Limited discovery of public assets and subdomains (via certificate transparency)
- TLS, DNS (incl. DNSSEC), SPF/DKIM/DMARC and HTTP security header checks
- Basic technology/CMS identification and cookie security checks
- Domain registration health (expiration, RDAP status)
- Overall score and 2–3 priority observations
- Full results delivered by email only — proves you control an inbox at the domain analyzed
What's not included
- Exploitation, brute force, aggressive fuzzing, or data modification
- Authenticated testing, business logic, or cross-user authorization flaws
- Full API, mobile app, or internal infrastructure audit
- Deep manual validation or a certifiable pentest report
- Continuous monitoring or unlimited executions
Limit: one scan per verified domain. It can be repeated after 30 days; continuous monitoring is a paid service (see Continuous Assurance).