Web Application Security Assessment/Passive · Active · Agent/From $19/mo

See exactly how your site gets breached.

SAFETAGGY runs 80+ security checks and an autonomous agent driving nine real pentest tools, then hands you every finding with proof-of-exploitation and the exact fix. Professional depth, self-service.

https://
No card for the trial Results in ~60s Read-only probes
Assessment · ConfidentialRef ST-4021
acme-corp.com
2026-03-15 · 14:22 UTC
67
Score
Needs attention
1 critical2 high1 medium1 low
criticalCVE-2024-31082Next.js middleware auth bypass
highCWE-693Missing Content-Security-Policy
highCWE-79Reflected XSS in /search
mediumPCI-3.2Deprecated Stripe.js v2 at checkout
lowCWE-200Server banner leaks nginx version
80+ checks · read-onlyProof + fix attached
01 — Coverage

Everything we look at, on one page.

86 checks across 14 categories on every scan — passive reconnaissance, active probes, and compliance audits. Active probes are detection-only markers, never exploitation payloads.

  • 01Security headersHSTS, CSP, frame + content-type optionsPassive12
  • 02SSL / TLSProtocols, cipher suites, certificate chainPassive9
  • 03Tech & JS librariesFingerprinting, CVE-matched dependenciesPassive8
  • 04Sensitive data exposureSecrets, .env, .git, backups, source mapsPassive7
  • 05CORS policyOrigin reflection, credentialed wildcardsPassive5
  • 06GraphQL exposureIntrospection, field suggestionsPassive4
  • 07Subdomain takeoverDangling CNAMEs on parked servicesPassive3
  • 08DNS & email securitySPF, DKIM, DMARC, MX posturePassive6
  • 09CMS & cloud servicesWordPress, exposed buckets, metadataPassive5
  • 10HTTP methodsTRACE, PUT, dangerous verbsPassive3
  • 11Cross-site scriptingReflected markers, detection-only payloadsActive6
  • 12SQL injectionError, boolean, and time-based probesActive5
  • 13CSRF & JWTToken checks, algorithm confusionActive5
  • 14ComplianceGDPR · LGPD · SOC 2 · PCI-DSSAudit8
02 — Deep Scan

An autonomous agent that pentests like an operator.

Point it at a domain you own. It reasons through a real engagement — driving nine offensive-security tools in an isolated container — and returns exploitable findings with proof, not a raw scanner dump.

  1. 01
    Recon
    Map the attack surface — ports, services, tech stack, and reachable endpoints.
  2. 02
    Scan
    Run CVE templates, directory fuzzing, and a full TLS audit against what was found.
  3. 03
    Exploit
    Verify injection and XSS candidates with real payloads — proof, not guesses.
  4. 04
    Report
    Write each confirmed finding with CWE, CVSS, evidence, and a remediation.
Domain-verified targets only~20 min per runCWE + CVSS on every finding
Toolchain Manifest09 tools
01nmapPort & service discovery
02httpxHTTP probing, tech detection
03katanaEndpoint crawling
04nucleiCVE & misconfig templates
05ffufContent & directory fuzzing
06testssl.shTLS configuration audit
07sqlmapSQL injection exploitation
08dalfoxCross-site scripting
09commixCommand injection
Isolated containerRead-only scope
03 — Engagement

Priced like a subscription, not a consultancy.

Trial
Free for 14 days
Free
14-day trial · no card
Start free
  • 3 scans per day
  • 1 Deep Scan credit / month
  • 3 AI fixes per day
  • All 86 checks + compliance
  • Markdown (AI-ready) export
Recommended
Pro
For indie hackers & small teams
$19/mo
billed monthly
Start Pro
  • 30 scans per day
  • 5 Deep Scan credits / month
  • Unlimited AI fixes
  • 5 scheduled scans
  • 3 API keys
  • PDF & HTML export
Business
For agencies & platforms
$79/mo
billed monthly
Start Business
  • Unlimited scans
  • 15 Deep Scan credits (Sonnet or Opus)
  • Unlimited scheduled scans
  • 10 API keys
  • White-label reports
  • Everything in Pro

All plans include active checks, compliance audits, and full recommendations. Failed or cancelled Deep Scans don’t consume credits. USD, billed via Stripe.

Begin the assessment

Know where you stand in about a minute.

Paste a URL for a free scan, or start a 14-day trial — no card required.