Free · No card

See your company the way a regulator and an attacker do

Enter your company domain: a free digital exposure assessment in 90 seconds, using public information only.

Free scan in 90 seconds

Enter your company details and we'll analyse what your domain shows to the internet.

Main domain only. Example: mycompany.com (no www or https)

Fully external scan • No access to internal systems • 100% free

The two lenses

One domain, two ways of looking at it

How a regulator sees you

Risk of a fine: GDPR, cookies and trackers, legal notices, forms with consent. What the AEPD (Spain's data protection authority) would check if it looked at your site.

How an attacker sees you

Risk of a cyberattack: spoofing of your email, encryption, headers, exposed panels and subdomains. The first things someone with bad intentions would look for.

How it works

Three steps. Zero hassle.

01

Domain and email, no sign-up

All we need is your company domain (e.g. mycompany.com) and an email address to send the report to.

02

We only analyse what is public

We don't access your systems, we don't ask for passwords and we don't run any intrusive scan. We look at the same things anyone can see from the internet.

03

You get your traffic light

One overall score, two sub-scores and concrete points in business language: what is happening, why it matters and how to fix it.

Sample report

What the result looks like

Example with fictional data
radar.verasens.dev / report
Example
Overall score
62/100
Risk medium-high
Compliance
55/100
Cybersecurity
70/100
Legal notice and privacyAccessibleOK
Cookie bannerTracker before consentImprove
FormsWith consentOK
TLS / EncryptionTLS 1.3OK
Email (SPF/DKIM/DMARC)DMARC missingCritical
HTTP headersNo CSPImprove
Example with fictional dataPublic information only

The real report is generated from the public signals of your domain and arrives as a PDF in your inbox.

What we check

Passive checks, on public information

Regulator lens

  • Compliant cookie banner (or trackers before consent)
  • Legal notice, privacy policy and cookie policy accessible
  • Forms with consent
  • HTTPS enforced

Attacker lens

  • SPF, DKIM and DMARC (email spoofing)
  • Security headers
  • TLS and certificate
  • DNSSEC and CAA
  • CMS, versions and exposed admin panels
  • Development subdomains
Trust and privacy

Frequently asked questions

Is it legal and safe?

Yes. We only use public information, with no access to your systems, no intrusive scan and no credentials. It is the same thing anyone can see from a browser or a DNS lookup.

What do you do with my email?

We send you the report. The updates notice is a separate checkbox, not pre-ticked; if you don't tick it, we won't write to you again. Privacy policy.

Indicative assessment based on public signals. Not a security audit or legal opinion.

From assessment to watch

Radar is today's snapshot

01

Today

Your traffic light with concrete points and the PDF report in your inbox.

02

Tomorrow

If you tick the box, we let you know when something changes that affects you: regulatory and security updates.

03

If you come out red

A specialist can look at your case and help you prioritise. No commitment.

Start with your domain.
Free, no sign-up, in 90 seconds.