Public identity signals
Authentication, session and third-party access signals that can be observed without logging in.

Interface Trust first measures what your organisation exposes publicly, free of charge. The Pain Test is continuously informed by documented incidents and authoritative advisories. You pay €29.90 only when you want the detailed findings, evidence and remediation path.
The free layer remains public, non-intrusive and strictly bounded. It measures web posture, attack surface, observable data exposure, technology debt and attack-resilience signals without attempting credential attacks or destructive exploitation.
Authentication, session and third-party access signals that can be observed without logging in.
Internet-facing technologies, entry points, transport controls and observable edge protections.
Public APIs, forms, uploads, third-party scripts and other observable exposure signals.
Reliable technology/version evidence correlated with authoritative vulnerability information where possible.
The paid audit unlocks detailed evidence, affected controls, priority findings and an actionable remediation path. It keeps unknown internal controls explicitly unknown rather than inventing a result.
With explicit authorisation and client-provided evidence, the assessment can extend to MFA for external access, least privilege, authorisation scope, logging/SIEM, abnormal or bulk-access detection and the blast radius of a compromised account.
Recent CNIL, CERT-FR, ANSSI and European developments have already added or strengthened identity, privilege scope, bulk-access detection, SPIP fingerprinting, CRA reporting readiness and crypto-agility guidance.
When access and prerequisites are available, Interface Trust can prepare controlled fixes, validate them in Preview/Staging, rescan, compare before/after and deploy according to the client approval policy.
No payment is required to see the free posture and Pain Test. Detailed evidence is available for €29.90 when you decide to continue.