We scan the web and tell site owners when their software has known critical holes.
6,754sites we have crawled run software with a known critical issue.
Three ways in
Find sites by technology
Every site we have seen running a given stack, version by version.
Browse technologiesThis is what a profile looks like
Security
6,754 sites we crawled run software with known critical issues.
We read what is already public — response headers, scripts, generator strings — and match the versions we can pin down against published advisories. When a match is critical we write once to the role-based address the domain publishes, with a link to its report. No login attempts, no exploitation, no personal inboxes. Any owner can opt the domain out from that report, and we stop.
The same detection, in your browser
The Technology Inspector reads the page you have open and names the stack behind it, with the signal behind every finding. Detection runs locally, in your browser.
Pages you open can add anonymous observations to the dataset. It is opt-in, and you can pause it in Settings at any time.
How it works
Crawl
We fetch pages like any visitor.
Detect
Detectors name the stack and version.
Match
Versions meet published advisories.
Free account
Full profiles, watch 3 domains, 1 list.