Most scanners stop at a list of findings. Aegis is built by the same people who'll implement the fix — the report isn't the end of the engagement, it's the start of one.
Free, instant, and passive (no exploitation attempts) — headers, TLS configuration, DNS mail-spoofing protection (SPF/DMARC), and commonly exposed files, on the Web Scans and SaaS Scans tabs. The SaaS scan adds CORS, GraphQL introspection, exposed API docs, client-side secrets, source maps, and SRI checks.
Every scan checks for lookalike domains registered against your brand — including ones registered but not yet activated. Paid options add the full domain list, a deeper similarity analysis, and an ongoing watch that alerts you the moment a dormant lookalike goes live.
Every finding comes with a one-line recommendation for free. The paid unlock adds a full step-by-step procedure — exact commands, config snippets, and what to verify afterward.
Web application security audits and Linux server hardening, done directly by us. A scan tells you what's wrong; a consult fixes it. Typical engagements: a one-time hardening pass, ongoing monthly re-checks, or an as-needed retainer.