Home Services Work About Research Contact Cyber Range Call +91 98836 53673 WhatsApp
Free · 3 minutes · no email to see your score

How exposed is your company, really?

Ten questions about how your website, data and access are actually set up — not how you hope they are. You get a score out of 100 and your three weakest areas immediately, free.

What does it check?
10
questions, multiple choice
0
data sent while you answer
3
minutes, start to score
₹0
and no call required
What it checks

The ten things that actually decide whether you get breached.

These are drawn from what we find on real engagements, not from a generic checklist. In our experience the same handful of gaps show up again and again in Indian SMBs — and almost all of them are cheap to close once someone owns them.

01

External testing

Whether anyone outside your own team has ever tried to break in on purpose.

02

Multi-factor auth

The single cheapest control there is, and the one most often half-deployed.

03

Data at rest

Where customer personal data lives, and whether the DPDP Act would find it acceptable.

04

Deploy access

Who can change production right now, and whether you could prove who did afterwards.

05

Security headers

Free, fast, and still missing on the majority of sites we look at.

06

Detection

How long a breach would run before anyone in your company noticed it.

07

Dependency hygiene

Most compromises use a known bug that already had a patch waiting.

08

Tested backups

An untested backup is a belief. Ransomware is where people find that out.

09

Standards

What a procurement review would find when an enterprise buyer asks.

10

DPDP readiness

Consent, retention and breach reporting — the parts that carry the penalties.

Questions about the questions

Before you start

Do I have to give my email to see my score?

No. Your score and your three weakest areas appear the moment you answer the last question, free and with no form. An email is only needed if you want the full written report covering all ten answers.

Does this scan my website?

No. It is a self-assessment. Nothing is scanned or probed, and your answers stay in your browser unless you ask for the report. For a real technical assessment of a live system, that is a penetration test — from ₹16,000.

Is this enough for DPDP compliance?

It covers the security-practice side of the Act — storage, access, detection, consent — and is a sound starting point for a gap analysis. It is not a legal compliance certificate. Our DPDP checklist goes deeper.

What happens after I get the report?

You get the report. That is it — there is no automated sales sequence. If you want help closing a specific gap, reply to the email or book a call, and we will scope it honestly.

Rather have a human look at it?

A free 24-hour discovery call, then a fixed price in writing. We will tell you if you do not need us.

Start a project Book a 15-minute call WhatsApp us