cidguard continuously scans your digital assets, computes an auditable risk score and shows exactly where to act — before someone exploits it.
First results in minutes. See plans →
Automated scans, a dashboard to manage detected vulnerabilities, and a health score for your environment.
Enter your root domain and we automatically map subdomains and exposed assets.
While you read this, someone could be mapping your assets. cidguard does it first.
See where you stand against the industry median — updated every scan cycle.
Prioritized by real impact on your operation.
Vulnerabilities are everywhere. The question is: who finds them first, you or the attacker?
Constant vigilance to surface software weaknesses.
Exposed services under your control and visibility.
Track your domain’s security with daily monitoring.
Smart monitoring against global C2 and botnet feeds.
A 0–100 score with an A–D grade. Updated every scan, auditable.
We surface vulnerabilities that impact LGPD/Privacy and ISO/IEC 27001 compliance.
Knowing you have an XSS isn’t enough. You need to know it violates Art. 46 of the LGPD — with technical evidence ready for your data protection officer.
Technical coverage detected externally by cidguard · does not replace a formal certification audit.
Lei 13.709/2018
ISO/IEC 27001:2022
Auditable report generated automatically
PDF with the per-control LGPD + ISO posture, the findings impacting each one, and a content fingerprint (SHA-256) for integrity verification — ready to support audits and conversations with clients, board and your data protection officer. Available on Pro and Enterprise plans.
Security is not an event, it’s a continuous process. While your team focuses on the product, cidguard monitors, detects and alerts.
Critical vulnerability detected
CVE-2024-3094 · wordpress/6.4 — immediate action recommended.
Proactive alerts available on Pro and Enterprise plans.
cidguard cross-checks your detected stack against the OSV database daily. If a new CVE affects your environment, you’ll be notified.
Critical and high findings arrive by email, consolidated per asset. Log in to the platform for description, severity and a suggested fix.
Score, per-pillar evolution, top vulnerabilities and remediation status generated and sent automatically to your team. Ready to share with the board or auditors.
A single security incident can cost far more than a year of monitoring. Starter is R$ 890/month.
Still have a question? We gathered the main ones here.
A pentest is a snapshot: it shows how you looked that day. But your surface changes every week, a new subdomain, an expiring certificate, an outdated library, a CVE released yesterday. cidguard swaps the snapshot for the movie: it scans your assets continuously, from the viewpoint of whoever tries to break in, and alerts you when something changes. You stop discovering problems in an audit and start fixing them first.
No. cidguard looks at your assets from the outside, exactly as an attacker sees them, with nothing to install, no VPN, no credentials in your network. You just confirm the domain is yours (a DNS TXT record) and the analysis begins. Zero friction with your IT team.
No, and we insist on being honest about it: manual pentests and formal audits play a role no tool automates. cidguard covers the gap between them, the continuous monitoring of what is exposed, and gets you to those moments far more prepared, with the homework done and the evidence in hand.
Every scan produces a 0 to 100 score with an A to D grade, broken down by pillar (application, network, identity, threats). It is not a magic number: it is auditable, you see exactly which findings make it up and how it evolves each cycle. It is the number the board understands and the engineer can defend.
We help you see where your technical vulnerabilities impact LGPD and ISO 27001 controls, with the evidence ready and an auditable PDF report (with an integrity fingerprint) to take to your data protection officer, your board or a client. It is the bridge between "we have an XSS" and "this affects Article 46 of the LGPD". It is not a compliance seal, it is the technical foundation that backs the conversation.
That is where continuous shines. Every day cidguard cross-checks the stack it detected on your assets against public CVE databases. If a new vulnerability starts affecting you, you find out. On the Pro and Enterprise plans, with a proactive email alert the same day, prioritized by real impact.
Yes, and for a security company that is non-negotiable. Each customer is isolated (multi-tenant), access is protected by strong authentication with MFA, everything travels encrypted, and downloading sensitive reports requires a verified domain. We treat your exposure data with the same care we ask you to have with yours.
It starts at R$ 890/month (Starter plan), with no setup fee and no lock-in. It is month to month, you adjust or cancel whenever you want. Compared to the cost of a single incident, it is cheap insurance. You sign up yourself in minutes, right on the site.
Your risk score in minutes. Real visibility into what’s exposed right now.