Module · Enterprise

Cloud security,
misconfigurations visible from the internet.

AWS, Azure and GCP exposure discovered from the outside, without API keys and without read-only roles. The same public storage buckets, open databases and forgotten instances an attacker would enumerate on a quiet afternoon.

Coverage

What we observe

Public storage buckets, exposed databases and management endpoints, orphaned instances and unclaimed DNS pointing at cloud services.

Scoring

How it's scored

Each observation maps to a published, versioned rubric. Click any score component to see the evidence behind it.

Action

What happens next

Findings route to the cloud owner with remediation guidance. Scores update automatically once the exposure closes.

Alerts list with severity, SLA and owner per finding

Module findings arrive as alerts with severity, SLA and an owner

Rate your own cloud security first

See what attackers and insurers see. Free for your own organisation.