Passive · External · Free

wisp it

Website Intelligence & Security Platform — a fast, passive security snapshot for any public website.

Public hostnames only. Internal networks and raw IPs are blocked.

What we check

Threat landscape

Attacks never stop. Visibility should not either.

Automated scans and opportunistic probes hit public sites every day — not just large enterprises. Volume keeps rising, and most attempts never make the news.

Continuous surveillance of what the internet can already see is how you stay ahead of that noise: catch exposure early, shrink the window attackers get, and keep a real picture of your risk as the landscape shifts.

Passive scan

What this test actually does

WISP IT only reads signals already visible from the public internet. No login. No exploits. No destructive attacks — just an outside-in snapshot and a clear risk score.

  • Public signals only
  • Non-intrusive
  • Shareable results
01

DNS & reachability

Resolve the hostname and confirm the site answers on HTTP and HTTPS.

02

Security headers

Check hardening headers browsers expect — HSTS, CSP, framing controls, and more.

03

Open ports

Probe a short list of well-known ports from the public network.

04

Tech signals

Note visible stack hints from headers and HTML to put findings in context.

After the scan

What you walk away with

Sample scan outcome: risk score, findings, and shareable result

When the passive scan finishes, you don’t just get raw noise — you leave with a clear outside-in picture you can act on and share.

  • A clear risk score

    One number that summarizes how exposed the public surface looks right now.

  • Actionable findings

    Concrete signals — headers, ports, DNS, stack hints — ranked so you know what to fix first.

  • A shareable result

    A link (and PDF when you need it) you can send to a teammate, client, or yourself later.