External AI Exposure Check
What does your product expose about its AI?
Enter a URL. We read only what your site already serves to any browser — response headers, public files and client-side code — and turn it into a report you can act on.
No email required. The report opens straight away.
What this check does — and does not — do
- Passive only: one page load, its public bundles, robots.txt and well-known files.
- No attacks, no port scanning, and no requests to the endpoints it discovers.
- Server-side controls cannot be checked from a URL. Routing, budgets, BYOK and audit trail stay invisible from outside — that is what block 5 lists.
Get a free 30-minute control review
Bring this report. We go through the gaps that need code access and you leave with a written control map — no source code upload required.
See what a governed workflow costs