1. Scan the public endpoint
Check visible TLS posture, security headers, downgrade exposure and post-quantum readiness signals before deeper discovery work.
The free scan is not the whole assessment. It is the fastest way to capture the first visible evidence and decide whether the next step is configuration cleanup, inventory work or a migration pilot.
Check visible TLS posture, security headers, downgrade exposure and post-quantum readiness signals before deeper discovery work.
Create a free account so the result is not lost. Keep the domain, score and visible findings as the first assessment record.
Use the scan as a starting point, then identify APIs, certificates, signing systems, suppliers and long-lived sensitive data.
Rank fixes and pilots across TLS 1.3, hybrid key exchange, signatures, supplier evidence and regulated data stores.
Most organisations do not need to start with a large consulting project. A public scan can expose basic transport-security gaps and create a saved record that justifies the next step.
TLS version and downgrade exposure
Security headers that affect public endpoint risk
Visible post-quantum or hybrid key exchange signals
Certificate and public-domain configuration context
A saved result that can be rescanned after fixes
A practical route into badge evidence or a deeper assessment
Public website TLS, security headers, visible readiness signals and a saved result.
Best for: Teams that need a quick first record and a reason to begin cleanup.
Public scan evidence plus inventory, data-lifetime mapping, supplier questions and migration prioritisation.
Best for: CTOs, security leads and regulated teams preparing a PQC roadmap.
Hands-on TLS, API, signature or data-protection migration work with documented evidence.
Best for: Teams ready to pilot or deploy post-quantum controls.
Enter an email and optional domain. The sign-in code creates the account and can send you straight to the scanner with the domain ready to check.
That gives you a saved baseline to revisit after TLS, CDN, header or provider changes.
See what the saved public scan report captures before deeper assessment.
Turn evidence into a 2026-2035 migration sequence.
Use a board-ready checklist for scans, inventory and pilots.
Book a short call when you need manual review or implementation support.
A PQC readiness assessment checks whether an organisation is prepared for post-quantum cryptography migration. It starts with visible public endpoints, then expands to cryptographic inventory, data lifetime, suppliers, APIs, signatures and migration priorities.
Yes. The free path starts with a public website scan and a saved result in a free account. That does not replace a full audit, but it gives you the first evidence record and a practical list of next steps.
The free scan does not inspect internal systems, private APIs, data-at-rest encryption, code signing, key management, VPNs or supplier contracts. Those belong in the broader readiness assessment.
Use it if you are responsible for security, infrastructure, compliance or technology risk and need a low-friction way to start post-quantum planning without commissioning a full audit first.