24/7 SSL + GDPR compliance monitoring

Monitor SSL + GDPR compliance for every website you own

SSL expiry, privacy policy, Impressum, cookie banners — checked 24/7 across every site you own. Try a free check or start the full account in one click.

No signup needed for the free tools.

Scanning shop.example.de...
SSL Certificate
Privacy Policy
Terms of Service
Impressum
Cookie Policy
GDPR Request
Cookie Banner
Tracker Detection

Features

Everything you need for compliance

One platform to monitor all aspects of your website's legal and security compliance.

SSL Monitoring

Get alerts before your SSL certificate expires. Never let a lapsed cert take your site offline.

Legal Document Detection

Automatically finds Privacy Policy, Terms of Service, Impressum, and more across your site.

Cookie Banner Compliance

Verifies GDPR-compliant consent banners with working accept and reject options.

AI Content Analysis

AI-powered quality scoring of your legal documents ensures they meet regulatory standards.

Screenshot Evidence

Visual proof of compliance status timestamped and stored for audit trails.

Multi-Region Support

13 regions with native-language keyword detection for localised compliance checking.

Status Override

Manually accept scan results you consider valid. Future scans with the same result inherit your decision.

Security Audit

Unlock 7 security checks when you verify ownership

Verified domain owners get a dedicated audit suite on top of compliance monitoring — owner-triggered checks gated by DNS-TXT ownership proof so no one can point them at a site they don't control.

Verified-only · DNS-TXT ownership check
Free

Security Headers

CSP, HSTS, X-Frame-Options and friends — audit the full browser-hardening set.

Pro

Exposed Files

Probes .env, .git, backup archives and 20+ other leak-prone paths.

Pro

TLS Grade

Protocol version, cipher suite and certificate chain — SSL Labs-style grade.

Business

DNS Hygiene

SPF, DMARC, DKIM and CAA records — email-spoofing and misissuance exposure.

Ultra

Open Ports

TCP probe of FTP, SSH, database and alt-HTTP ports that shouldn't be public.

Ultra

JS Library CVE

Scans third-party scripts against known-vulnerable versions (jQuery, Bootstrap, Lodash and more).

Ultra

Typosquat Watch

Permutes your domain and flags registered look-alikes that could be used for phishing.

Ownership-proof gate

Every scan requires an active DNS-TXT verification on the domain. No way to weaponise it against a third party.

Owner-triggered only

These checks never run on a schedule — they go off only when the verified owner clicks Run scan.

Tier-gated, upgrade-friendly

Start free with Security Headers. Upgrade later to unlock TLS, DNS, JS CVE and typosquat protection.

How It Works

Up and running in minutes

1

Add your website

Enter your URL and select your target region. We handle the rest.

2

We scan automatically

Our scanners check SSL, legal pages, and cookie consent every hour.

3

Get actionable insights

See compliance status, fix issues, and download evidence reports.

Pricing

Simple, transparent pricing

Start free, upgrade when you need more.

Free

Free forever

Freeforever
  • 3 websites
  • SSL + Legal document monitoring
  • 12-hour scan interval
  • 5 manual scans / day
  • Security Headers audit (verified owners)
  • Basic compliance checks
Get Started
Most Popular

Pro

For growing teams

$19/ month
  • 15 websites
  • Everything in Free
  • 1-hour scan interval
  • Cookie Banner detection
  • Tracker detection
  • AI content analysis (500 tokens / day)
  • Screenshot evidence
  • Status override
  • Exposed Files + TLS Grade audits
  • 50 manual scans / day
Choose Pro

Business

For agencies & SaaS

$49/ month
  • 50 websites
  • Everything in Pro
  • 30-minute scan interval
  • DNS Hygiene audit (SPF / DMARC / DKIM / CAA)
  • API access
  • Webhooks
  • AI analysis (2,000 tokens / day)
  • 200 manual scans / day
  • Priority support
Choose Business

Ultra

For enterprise

$99/ month
  • Unlimited websites
  • Everything in Business
  • 15-minute scan interval
  • Open Ports + JS Library CVE + Typosquat Watch
  • Unlimited AI analysis & manual scans
  • Dedicated success contact
  • Custom regions on request
  • SLA-backed scan availability
Choose Ultra

Trusted by teams across Europe

13

Regions

24/7

Monitoring

100%

AI-Powered

GDPR Ready

Ready to secure your compliance?

Start monitoring in under 2 minutes. No credit card required.

Get Started Free

FAQ

Common questions

Do you store the websites I scan with the free tools?

No. The free tools accept a URL, run the scan, return the result, and only keep it briefly (about 15 minutes) so we can skip duplicate scans. We don't create an account or send marketing email based on tool usage.

What's the difference between the free tools and a free account?

The tools run a single one-shot check per request — no JavaScript rendering, no AI. A free account adds continuous 24/7 monitoring across all your sites, real-browser scans that handle JavaScript-rendered pages, AI policy review against GDPR / TMG, and email + Slack alerts when something breaks.

Which regions and laws do you cover?

GDPR (EU/EEA), Germany TMG §5 (Impressum), UK GDPR + PECR, Switzerland nDSG, and ePrivacy variants across DE / FR / ES / IT / NL / PL. SSL checks are region-agnostic. Region-specific rule packs can be requested on the Business plan.

How do you scan cookie banners?

Free tool: a static fingerprint scan against the 12 most common consent platforms (OneTrust, Cookiebot, Usercentrics, Iubenda, etc.). Paid plans load the page in a real browser, accept and reject the banner programmatically, and verify that no third-party cookies are dropped before consent.

Where is the data stored and who is the data processor?

Data is processed and stored on EU servers in Germany. Payment processing and tax collection are handled by an external Merchant of Record. Our full data-processing agreement is available at /dpa.

Can I export findings or hook them into my own tooling?

Yes — the Business plan exposes a REST API and outbound webhooks for every scan result and status change, so you can feed compliance data into Linear, Slack, PagerDuty, or your own dashboard.

How accurate is the AI policy review?

The AI is a guide, not a lawyer. It flags clauses that are missing or vague against the relevant statute and points you to the exact GDPR / TMG article. We always recommend running material findings past your privacy counsel before publishing changes.