VPS Security Analyzer
Audit your VPS perimeter and domain surface. Detect accidentally exposed ports, SSL vulnerabilities, dangling DNS records, and email authentication posture.
Why Audit Your VPS External Perimeter?
Most breaches on Hetzner, OVH, DigitalOcean or AWS VPS happen due to overlooked default configurations.
Docker Port Leaks
Docker bypasses UFW firewall rules by default. Containers bound to 0.0.0.0 leave Redis or Postgres accessible to the world.
SSL & Modern Ciphers
Verify certificate chains, TLS 1.2/1.3 cipher suites, deprecations, and expiration dates before outages hit your users.
DNS & Email Hygiene
Malformed SPF records or missing DMARC enforcement allow attackers to spoof your transactional domain in phishing campaigns.
Want to audit what happens INSIDE your VPS?
The external scanner only sees the surface. Deploy our lightweight Rust security agent (<15 MB RAM, 0% CPU) to audit running processes, loopback bindings, SSH brute-force attempts, and telemetry in real time.
Frequently Asked Questions
Is it safe to run this scan against my server?
100% safe. We never perform brute force attacks or exploit payloads. It is a passive, non-destructive perimeter inspection of public DNS, SSL certificates, and standard service ports.
Does it require installing any software on the VPS?
No. This web tool runs 100% externally from our probes. If you later want continuous internal auditing (loopback ports, process anomalies, cloud htop), you can install OxiPulse or FerroSentry with one command.