Aegis — sovereign web-security under Swiss law.
Ithildin Aegis maps and grades the outward attack surface of your websites and applications — TLS, security headers, version disclosure, cookies — and turns it into a clear, sovereign remediation plan. Reported under Swiss law.
Detect
Continuous external scanning of your domains, TLS and HTTP security headers — the attack surface an adversary sees first. No agent, no access, no login required.
Govern
Turn findings into policy: enforced HSTS, CSP, frame-ancestors and cookie hardening, tracked to remediation across every web property you own.
Report
Board- and auditor-ready reports — graded, evidenced and FADP/nDSG-aligned — generated and retained under Swiss jurisdiction.
Scan your attack surface
Enter any public URL. We perform a read-only check of its public responses and grade its web-security posture in seconds — no login, nothing stored.
Read-only · no login required · nothing stored.