See.Tech

External cyber risk and attack surface visibility

See What Attackers See Across Your External Attack Surface

See.Tech is an agentless external cyber risk platform that identifies internet-facing exposure, vulnerabilities, leaked credentials, email security weaknesses, DNS and SSL/TLS risks, malicious domains and brand impersonation across your public digital footprint.

It starts from a domain name. Nothing is installed, no credentials change hands, and the first findings return in hours.

AgentlessNothing to install
HoursTo first findings
One domainThe entire setup
yourcompany.com Scanning
54 Medium
Exposure score
Credentials exposed in breach corpus
Dark webr****@yourcompany.com · +3 accounts
Critical
Company data listed on a leak site
Dark webransomware forum · 2 mentions
Critical
TLS certificate expires in 6 days
TLSmail.yourcompany.com
High
Lookalike domain registered
Brandyourcompany-support.net
High
Dark web monitoring, underground sources checked continuously
Risk Classification, acme-demo.com
84 / 100 Medium
Breached accounts 96
Dark web exposure 88
Email security 41
IP & domain reputation 79
SSL / TLS 52
Vulnerabilities 33
Healthy Needs attention Act now

What one assessment returns

Findings, not noise.

A real engagement with a national creative agency, scored and prioritised in a single run.

84/100
Overall posture
28
Vulnerabilities found
4
Lookalike domains
0
Credential leaks

What See.Tech assesses

Understand Your External Cyber Exposure

Every area below is assessed from outside, using publicly available information, with no access to the organisation being assessed.

CapabilityWhat it identifies
External exposureInternet-facing hosts, services and subdomains discovered from passive DNS and certificate transparency logs.
VulnerabilitiesKnown vulnerabilities in internet-facing software, identified and ranked using CVSS severity.
Leaked credentialsEmail addresses and passwords tied to your domain that appear in breach corpora.
Dark web intelligenceReferences to your organisation on monitored underground sources and leak sites.
Email securitySPF, DKIM and DMARC configuration, and the MX records behind them.
DNS securityOpen resolvers, zone transfers, misconfigured records and other DNS weaknesses.
SSL/TLSProtocol versions, cipher strength, certificate validity and approaching expiry.
Domain and brand riskDomain reputation, plus lookalike and typosquatted domains registered against your brand.
Cyber risk scoringA consolidated external risk score with a breakdown by category.
Executive reportingDownloadable technical reports and executive summaries written for a board audience.

How it starts

Start with a Domain

A See.Tech assessment begins with one piece of information: a domain name you own or are authorised to assess.

From that domain, See.Tech enumerates subdomains and internet-facing hosts, examines email and DNS configuration, checks SSL/TLS and security headers, identifies vulnerable internet-facing software, searches breach and dark web sources for exposed credentials, and looks for domains registered to impersonate you.

  • No software to install, no appliance to deploy and no VPN.
  • No credentials, API keys or access to your internal network.
  • No change control, and no risk to production services.
  • First findings typically return within hours.
The four stages of a See.Tech assessment: you give us a domain, we map what is public, every finding is scored by severity, and you receive a score with a prioritised list of actions
A See.Tech risk classification dashboard showing an assessment average score of 54, rated medium

The outside-in view

See Your Organisation from the Outside

Internal security tooling works from an asset inventory: the systems you know about, listed by the people who built them. An attacker has no inventory and no list. They start from what is published, which is why they routinely find things the inventory never recorded.

A forgotten subdomain, a supplier portal nobody decommissioned, a certificate renewed late, a work address in someone else's breach. None of these appear in an internal scan of known assets, and all of them are visible from outside.

  • Assessment starts from public information, not from a list you supply.
  • Findings include assets that are not in your inventory, which is usually where the risk sits.
  • The same method works on a supplier, because it needs no access or relationship.

One external risk view

Point tools answer one question each.

A vulnerability scanner reports vulnerabilities. A dark web monitor reports credentials. A DMARC checker reports email records. Each is useful, and none of them tells you whether an exposed credential happens to belong to a domain that also exposes a remote access service.

See.Tech brings external vulnerabilities, leaked credentials, email security, DNS and SSL/TLS weaknesses, dark web intelligence and domain impersonation into one prioritised external risk view, so the relationships between findings are visible rather than spread across six consoles.

For MSPs and security partners

Built for MSPs and Security Partners

See.Tech supports white-label delivery, so Managed Service and Security Providers can run external cyber assessments for their clients and deliver the results under their own brand.

  • White-label the platform with per-client branding, a custom domain and branded reporting.
  • Assess a client, or an authorised prospect, starting from a domain name with nothing to deploy.
  • Produce board-ready reports for security reviews and quarterly business reviews.
  • Add external cyber risk assessment to an existing managed service without new agents to support.
A See.Tech cyber security risk assessment report, branded for a partner

What it means for you

What you actually get out of it.

Findings are only worth having if somebody can act on them. Every assessment is built to answer the four questions security teams are actually asked.

Visibility

See your organisation the way an attacker does.

A complete, external inventory of what you expose. Including the assets nobody remembered were there. Most first assessments turn up hosts, subdomains, or certificates the owner had no record of.

Priority

Know what to fix on Monday morning.

Findings arrive ranked by severity and effort, not dumped as a list. Your team starts with the change that removes the most risk, rather than working alphabetically through a PDF.

Assurance

Show the board that risk went down.

One score, tracked over time, in language a non-technical audience can act on. Useful for executive reporting, insurance and due diligence questionnaires, and evidence under POPIA, GDPR, and similar regimes.

Supply chain

Hold your suppliers to the same standard.

Because nothing is installed, you can assess a third party as easily as your own domain. Score a vendor before you sign, and keep scoring them for as long as they hold your data.

Our Pricing

From US$36 per bundle, clarity built in.

Each bundle gives you 10 scan credits to deploy where you need them most. Each scan uses a set number of credits, so you can mix, match, and monitor as you go. Credits never expire and can be used across all available scans. No lock-ins, no limits, pay only for what you use.

Use Cases

From finding to action.

Two engagements, two very different footprints, the same method: map what is publicly visible, score it, and hand over a prioritised roadmap.

Agency

Safeguarding a creative agency's online presence

We carried out a detailed cybersecurity assessment for a national creative agency, revealing an overall security posture of 84/100. Our analysis uncovered legacy TLS protocols, missing DKIM records, and multiple typosquatting domains. We provided a clear roadmap of prioritised actions to help the agency strengthen email security, phase out outdated TLS, and tighten SSL configurations.

Learn more

National

Protecting critical infrastructure from cyber threats

A leading national organisation with a major digital footprint became an attractive target for cybercriminals. By leveraging See.Tech's non-invasive cybersecurity assessment and threat intelligence, the organisation identified issues. Armed with these insights, they prioritised fixes and tightened defences, significantly reducing phishing risk and strengthening stakeholder trust in under 60 days.

Learn more

Key Features

Agentless, external, fast, and built for action.

See.Tech uncovers cyber risk in hours, not weeks, with a modular, SaaS-based platform that delivers full visibility of your external attack surface.

Agentless External Scanning

No installations, no agents, no disruption. See.Tech runs entirely from outside your perimeter, the way an attacker would.

Continuous Change Detection

Scheduled weekly or monthly rescans, plus monitoring between them that flags material changes with a timestamp and a severity. Certificate expiry is tracked and alerted at 60, 30 and 7 days.

Scoring & Peer Benchmarking

One score that reflects your live posture, benchmarked against an anonymised cohort in your industry and region, and backed by prioritised recommendations.

Ask AI & Executive Briefings

Interrogate your findings in plain English with the built-in AI assistant, and get a monthly board-ready risk summary generated for you.

Dark Web, Credentials & Brand

Continuous monitoring of underground sources for leaked credentials, alongside detection of typosquatting, lookalike domains and phishing infrastructure registered against your brand.

White-Label, API & Webhooks

Offer See.Tech under your own brand with per-client portals, and wire it into your own stack through a documented REST API and webhooks.

Measurable progress

Watch the score move.

The first assessment sets your baseline. Scheduled rescans show what actually changed once the roadmap has been worked through. Which is the part your board wants to see.

The same dashboard after remediation, showing an assessment average score of 100, rated low

About Us

Who we are.

See.Tech is a proactive cyber threat intelligence platform dedicated to protecting brands worldwide by revealing exposures before attackers can exploit them. We combine advanced AI detection with deep expertise to identify phishing threats, brand impersonation, malicious domains, leaked credentials, and misconfiguration, fast.

From global enterprises to regional leaders, we help organisations safeguard their reputation, protect customer trust, and stay compliant with evolving regulations like POPIA, GDPR, and beyond. Our approach is simple: see threats first, act fast, protect what matters.

MSP Program

Partner with us.

Want to deliver See.Tech under your own brand? Our MSP Partner Program gives Managed Service and Security Providers the tools to extend their offering with proactive cyber risk assessments.

  • White-label our platform and deliver it as your own.
  • Run instant, external scans of client environments to reveal exposures before attackers do.
  • Generate branded, board-ready reports that translate risk into action.
  • Add recurring revenue by packaging proactive cyber intelligence into your service stack.
A See.Tech cyber security risk assessment report, branded for a partner

FAQs

Common questions about external cyber risk.

What is See.Tech?

See.Tech is an agentless external cyber risk and attack surface visibility platform. It assesses the security weaknesses an organisation exposes to the public internet, starting from a domain name, and reports them scored by real-world severity.

What is an external cyber risk assessment?

An external cyber risk assessment identifies security weaknesses that are visible from outside an organisation, using only publicly available information. It covers internet-facing vulnerabilities, email authentication, DNS and TLS configuration, exposed credentials, domain reputation and brand impersonation.

What is an external attack surface?

An external attack surface is everything about an organisation that is reachable or discoverable from the public internet: domains and subdomains, internet-facing hosts and services, email infrastructure, certificates, exposed credentials, and domains registered to impersonate the brand.

Does See.Tech require an agent?

No. See.Tech is agentless. There is no software to install, no appliance, no VPN and no credentials to hand over. A domain name is all that is required to begin an assessment.

What can See.Tech identify from a domain?

From a domain alone, See.Tech enumerates subdomains and internet-facing hosts, identifies vulnerable internet-facing software, checks SPF, DKIM and DMARC, examines DNS and SSL/TLS configuration, checks domain reputation, searches breach and dark web sources for exposed credentials, and identifies lookalike and typosquatted domains.

Can See.Tech identify leaked credentials?

Yes. See.Tech checks breach corpora and dark web sources for credentials tied to your domain, and reports that an exposure exists along with where it surfaced. It does not store passwords.

Can See.Tech assess email security?

Yes. See.Tech assesses SPF, DKIM and DMARC records along with the MX configuration behind them, which together determine how easily an outsider can send email that appears to come from your domain.

Can See.Tech detect domain impersonation?

Yes. See.Tech identifies lookalike and typosquatted domains registered against your brand, and assesses domain reputation against threat intelligence sources.

How is See.Tech different from a vulnerability scanner?

A vulnerability scanner assesses hosts you already control and have listed, usually using an agent or credentials, and reports software vulnerabilities. See.Tech assesses what the internet can reach, discovers assets you did not list, and covers a wider range of exposure including credentials, email, DNS, TLS and brand impersonation. Most organisations need both.

Is See.Tech suitable for MSPs?

Yes. See.Tech supports white-label delivery with per-client branding and branded reporting, so MSPs and MSSPs can run assessments for clients and deliver the results under their own brand.

Live Demo

See it working before you commit.

We keep a live instance open at demo.see.tech, loaded with real assessment data. Click through the dashboards, open a report, and judge it for yourself. No account, no credit card, nothing to install.

A See.Tech assessment report as shown in the live demo

Press Room

The latest from the press room.

Product updates, expert insight, and media coverage.

Ready to see the threats before they strike?

Let's talk about protecting your brand, your customers, and your reputation. Our team is ready to show you exactly how See.Tech can help, starting today.