ScanGuard - Autonomous White-Hat Cybersecurity Scanner

ScanGuard is a SaaS cybersecurity platform that autonomously scans web infrastructure for vulnerabilities using 24 detection modules. It operates in detection-only mode - no destructive payloads, no data exfiltration. All scan data is stored and processed exclusively within the European Union (EU/EEA). The platform supports ISO 27001, NIS2, GDPR, PSD2, DORA, and SOC 2 compliance frameworks.

Detection capabilities

Passive Recon (Tier 1): subdomain enumeration via CT logs and passive DNS, BGP/ASN/WHOIS network mapping, OSINT and secret hunting across GitHub and Pastebin, passive port intelligence via Shodan/Censys, Certificate Transparency monitoring, email security audit (SPF/DKIM/DMARC), Wayback Machine historical exposure analysis, favicon hash and technology fingerprinting.

Active Detection (Tier 2): web fingerprinting and CVE matching, EPSS v4 + CISA KEV exploit prioritization, API security testing (REST/GraphQL/gRPC), injection and misconfiguration detection, employee PII exposure detection, cookie consent adequacy assessment, subdomain takeover detection.

Compliance analysis: GDPR gap analysis covering Articles 28, 32, 35, and 46; regulatory scope detection for NIS2 and PSD2; GDPR Controller/Processor role analysis; ISO 27001 audit-ready report generation; NIS2/DORA compliance documentation.

Plans and pricing

Recon plan is free forever. It provides passive Tier 1 scanning for 1 domain, with a per-scan PDF report. No credit card required.

Full Scan plan costs €99 per month. It covers 5 domains with Tier 1 and Tier 2 detection, GDPR gap analysis, regulatory scope detection, API security testing, PII exposure detection, and a weekly PDF report plus web dashboard.

Enterprise plan is custom-priced. It includes everything in Full Scan plus 24/7 continuous monitoring, OOB verification, JavaScript change monitoring, supply chain processor mapping, unlimited domains, ISO 27001 audit-ready reports, NIS2/DORA compliance documentation, a dedicated account manager, and SLA with guaranteed response times.

EU data residency guarantee

ScanGuard operates exclusively on EU infrastructure. All scan data - including target domain information, discovered vulnerabilities, and generated reports - is stored and processed within EU data centres. No data is ever transferred outside the EU or EEA. LLM analysis is powered by Mistral, an EU-based AI provider. This makes ScanGuard fully compatible with GDPR data residency requirements and EU sovereignty mandates under NIS2.

Technology and ethics

ScanGuard is strictly White-Hat. It never exploits vulnerabilities or exfiltrates data. Target systems cannot distinguish scanner traffic from normal user traffic. The platform is designed for authorized security testing of infrastructure that the customer owns or has explicit permission to scan.