See ClickScan before you sign up
A short product tour of the whole thing: adding something you own, running a check, and reading the report that comes back. No account needed to watch.
What the tour shows, in writing
The same three steps, with the detail the video moves past.
Prove it is yours, then add it
A domain, an IP address or a mailbox. The passive checks — TLS, HTTP security headers, email authentication, subdomains, look-alike domains — read what is already published, so they run straight away. The port scan, the live spoofing test and the breach lookup need the asset proven yours first, by a DNS record, a file at /.well-known/, an emailed code, a callback from the IP, or reverse DNS.
On demand, scheduled, or on repeat
Run a check on the spot, book it for a date and time in your own time zone, or repeat it daily, weekly or monthly. Between two runs of the same check, change detection reports what moved and notifies you only when something did.
A grade, a reason, and a fix
A plain-language report graded A+ to F, naming the finding that drove the grade, how serious it is and exactly what to do. Export it as a PDF per scan, or a combined per-asset report as executive summary or full detail. A finding that genuinely does not apply can be marked as such, with a reason, and stops affecting the grade.
Run your first check free
Sign up with your email address — there is no password and no card. New accounts get free starter credits, so your first check costs nothing.
Get free accessPrefer to read first? See every check or what it costs.
The video is on YouTube. Nothing loads from Google until you press play — until then this is a still image served from this site. Pressing play loads the player from youtube-nocookie.com, which then sets its own storage; see the cookie policy. You can also watch it on YouTube (opens in a new tab).
