This review is designed for businesses that want practical website safety observations before spending money on a larger security project. It does not require admin access and does not attempt to break into systems.
HTTPS and HSTS
Content Security Policy
X-Frame-Options
Referrer Policy
Permissions Policy
security.txt
Robots and sitemap signals
Visible contact and company trust signals
Public scam-risk notes
Buyer, inputs and deliverables
This service is for a business owner, website manager or agency that needs a time-specific review of one public website. Provide the website URL, one email domain and the customer-trust or scam concern. The Starter deliverable is a prioritised PDF report covering the public website, HTTPS, browser headers, email-domain signals and practical recommendations.
Example finding: "Strict-Transport-Security header not detected. Priority: medium. Business impact: first-time visitors do not receive the browser's HTTPS-only instruction from this domain. Recommendation: confirm HTTPS coverage for all subdomains before enabling an appropriate HSTS policy."
The output helps you decide what to fix now, what to monitor and what may need a deeper penetration test or vulnerability assessment later. It is especially useful for booking websites, online shops, consultants, agencies and businesses that receive enquiries or payments online.
Starter Scam Safety Review
Includes website safety checks
£99
Includes one public website, one email domain, scam-risk recommendations and a prioritised PDF report. Delivery is within 2-3 business days after complete information and scope confirmation, followed by seven calendar days of email clarification. No call is included.