Find every exposed system, scan your network inside and out, and get one fix list ordered by business risk.
In a controlled comparison with a leading commercial scanner, Sentinel found more known issues and completed the scan over 4 times faster.
Both scanners assessed the same test network under the same conditions. We checked every result against the known security issues in that network.
Source · Endolum controlled scanner benchmarkSentinel finds the subdomains, IP addresses, certificates, and live services connected to your company. It watches certificate logs continuously, so new internet facing hosts reach your change feed the day they appear.
Sentinel discovers ports, identifies services, matches CVEs, checks exploit activity, and safely tests for default credentials and misconfigurations. Your report ranks the evidence by business impact and tells you what to do next.
Run one container that only connects outward from your network. Sentinel finds live hosts, assesses them, and adds every internal finding to the same dashboard and report, with no inbound ports or appliance.
On Enterprise, an analyst verifies the evidence, reviews threat activity in your sector, and traces attack paths automated scans can miss. You receive one report for your board or auditor, with every fix in priority order.
CHF 299 per month gives you external discovery, scheduled scans, internal coverage for up to 256 live assets, and reports in English or German. Buy it online and start the same afternoon, with no annual minimum or integration project.
Sentinel surfaces public RDP, Telnet, SMB, test servers, and vendor access that outlived their purpose. You see each one in the first report, with the evidence needed to close it.
Every finding names the affected version, CVE, available fix, and whether public exploit code exists. EPSS and CISA KEV data show which weaknesses deserve immediate attention.
Sentinel safely checks common defaults on exposed routers, storage devices, and services. The test stops at the first match and never exploits the target.
Sentinel separates new, resolved, and returned findings. If a weakness comes back, you see it as a regression with its history intact.
Home uses a standard model. Business uses a premium model. Enterprise uses the most capable model.
Set email or webhook alerts for new hosts, vanished services, and expiring certificates. Every muted change stays in the feed, so the history remains complete.
Yearly billing is CHF 2'870, saving 20 percent.
Attack Surface Management continuously finds and monitors everything your company exposes to the internet: domains, subdomains, IP addresses, certificates, and live services. Give Sentinel one verified domain and it builds the inventory, watches for changes, and lets you scan the hosts that matter.
A firewall enforces the rules it has today. Sentinel checks the result from the internet and finds old forwards, forgotten exceptions, and services that should have closed. That outside view shows what an attacker can actually reach.
Automated scanners do not filter by headcount. They probe public IPs for exposed VPNs, servers, and known flaws. One unpatched gateway creates the same opening at a 20 person business as it does at a company with 5000 people.
Sentinel identifies services and matches them with known CVEs. Credential checks use common defaults and stop at the first match. Sentinel does not exploit a finding, change the target, or install software.
Run one Docker container on a host inside your network. It makes an outbound connection to Sentinel, discovers live hosts, and sends findings into the same dashboard. You open no inbound port, build no VPN, and install no appliance.
Internet search engines provide broad public data. Sentinel assesses systems you own on demand, shows the evidence, and turns it into a prioritized remediation plan. Use Sentinel when the next question is what your team should fix first.
On Enterprise, an analyst reviews your full external surface, exposed services, current threats in your sector, and the evidence behind every finding. The final report traces combined attack paths and puts each fix in business priority order. We agree the scope and price with you before the assessment.
Sentinel only scans systems you own or are authorized to assess. The free scan checks the public IP your request comes from. Business targets require DNS or administrator verification before Sentinel accepts them.
Free scan data is deleted 24 hours after delivery. Business data is encrypted at rest and retained while your subscription remains active. The platform runs in Frankfurt, while your customer agreement falls under Swiss jurisdiction.
Swiss IT providers, MSPs, security consultants, and system integrators can resell Sentinel under recurring service agreements. Approved partners receive a private rate card in the written agreement and keep the customer relationship. See the partner program.