Torva Edge

Shows what the internet can see.

Edge scans your internet-facing systems the way an attacker would, then hands you a plain-English report and a score you can track every month.

Start with Edge See a sample report

Six angles, checked on your schedule

Edge looks at exposed services, encryption, web server settings, known vulnerabilities, email security, and login protection. Run it on demand any time you make a change, and on an automatic monthly schedule so nothing drifts unnoticed.

What Edge checks
  • Open ports and exposed services
  • TLS certificates, versions, and ciphers
  • Security headers and web server configuration
  • Software versions with known vulnerabilities
  • SPF, DKIM, and DMARC email records
  • Internet-facing logins and MFA

Every finding comes with the fix

No jargon dumps. Each finding explains what we saw, why it matters, and the exact steps to resolve it, including Windows Server and IIS specifics. When you rescan, fixed issues drop off and your score climbs.

Example: RDP exposed to the internet

Close port 3389 at the firewall, or restrict it to known addresses. Move remote access behind a VPN or RD Gateway with MFA. Review Event ID 4625 for outside login attempts.

A score that tells the story

One number out of 100 and a letter grade, with a trend line across every scan. Leadership sees progress at a glance; IT sees exactly which change moved it. It's the fastest way to prove that a configuration change made you safer, not weaker.

We only scan what you verify

Before Edge scans anything, you confirm you control the domain with a DNS record, an uploaded file, or an email to your IT admin address.

Edge is not a penetration test. It's automated scanning that finds known weaknesses quickly and repeatedly. Many organizations run Edge every month and bring in a manual penetration test when compliance requires one.

Start with Edge