ScanGuard gives businesses an attacker's-eye view of their own domain. The free snapshot (one per domain, authorized by a confirmation email) replicates what threat actors' automated scanners see: exposed surface, severity counts and whether the domain appears on attackers' published auto-scan target lists. The one-time Full Passive & Active Evaluation (€489) verifies every finding, locates it exactly and delivers a fix per finding mapped to ISO 27001 / NIS2 with a remediation workflow. All checks are detection-only; intrusive verification runs only under a signed Rules of Engagement with human oversight. All scan data is stored and processed exclusively within the European Union (EU/EEA).
Free snapshot, passive (zero packets to the target): subdomain enumeration via CT logs and passive DNS, ASN/WHOIS network ranges, attacker target-list check, secret and exposure hunting (archived URLs, exposed .git/.env), email security grade with fix (SPF/DKIM/DMARC/MTA-STS), Certificate Transparency (expiring or weak certificates). Free snapshot, safe active (rate-limited, detection-only, no exploitation): live hosts and open ports (top 100), HTTP fingerprint and outdated components, TLS grade on the primary host, exposure and misconfiguration templates with severity distribution and CISA KEV hits. The snapshot reports counts and severity; exact locations are withheld.
Evaluation (one-time, human-supervised, signed Rules of Engagement): every snapshot finding verified and located, full host list including staging and internal names, which secret or URL leaked and whether it is still valid, full port range and service enumeration, exact vulnerable endpoints and PoC, API security testing (REST/GraphQL introspection, IDOR, authorization), injection and misconfiguration verification, EPSS v4 + CISA KEV prioritization, a fix per finding mapped to ISO 27001 / NIS2 and a remediation workflow.
Enterprise adds 24/7 continuous monitoring, OOB verification, JavaScript change monitoring, GDPR processor mapping, GDPR gap analysis, regulatory scope detection, ISO 27001 audit-ready reports and NIS2/DORA compliance documentation.
Snapshot: free, one per domain, no credit card. Authorized by a confirmation email that records consent, IP and timestamp (Rules of Engagement). Teased PDF report with counts by severity, KEV hits, surface map, email security grade with fix, and the target-list signal.
Full Passive & Active Evaluation: one-time €489. Delivered within 5 days. Everything in the snapshot verified and located, plus API security, injection and misconfiguration verification, EPSS/KEV prioritization, a fix per finding mapped to ISO 27001 / NIS2 and a remediation workflow.
Continuous monitoring: offered after the evaluation from €99 per month, with re-scans, new-asset alerts and ongoing target-list watch.
Enterprise: custom pricing with unlimited domains, 24/7 continuous monitoring, OOB verification, JavaScript change monitoring, GDPR processor mapping, GDPR gap analysis, regulatory scope detection, ISO 27001 audit-ready reports, NIS2/DORA compliance documentation, a dedicated account manager and SLA.
ScanGuard operates exclusively on EU infrastructure. All scan data - including target domain information, discovered vulnerabilities, and generated reports - is stored and processed within EU data centres. No data is ever transferred outside the EU or EEA. LLM analysis is powered by Mistral, an EU-based AI provider. This makes ScanGuard fully compatible with GDPR data residency requirements and EU sovereignty mandates under NIS2.
ScanGuard is strictly White-Hat. It never exploits vulnerabilities or exfiltrates data. Target systems cannot distinguish scanner traffic from normal user traffic. The platform is designed for authorized security testing of infrastructure that the customer owns or has explicit permission to scan.