Free Security Check

How exposed is
your business?

Scan your domain or a public GitHub repository for free. On a paid engagement, Kawacha goes deeper — private code, cloud infrastructure, network perimeter, and your full technology stack.

Passive scan only — we never probe your systems. All checks use publicly available information.

What we check (domain)

SPF, DKIM, DMARC — email spoofing protection
HTTPS enforcement + TLS version
Security headers — HSTS, CSP, X-Frame-Options
SSL certificate validity + expiry
Exposed subdomains (Certificate Transparency)
Sensitive files publicly accessible (.env, .git)
Data breach history — known breaches affecting your domain
DPDP Act 2023 — privacy policy compliance

Used by businesses preparing for CERT-In and DPDP Act compliance.