Managed website security audit

Your website, audited — and actually fixed.

Otack Audit checks your site for security, SEO, AI-readiness and GDPR gaps, hands you a report in plain language, and — because we are a web studio — fixes what matters. Then we keep watch.

SecuritySEOAI-readinessGDPR / ePrivacy

The deliverable

See exactly what you get.

One clear report: an overall grade, per-area scores, prioritized findings — and the exact URLs at risk, with backups and database dumps flagged first.

What we measure
  • TLS, HSTS & certificate validity
  • Security headers (CSP, X-Frame, …)
  • DNS · SPF · DKIM · DMARC
  • Exposed files, backups & .git
  • Open ports & known CVEs
  • Admin panels & login exposure
  • Indexability, metadata & canonicals
  • Structured data & schema.org
  • Sitemaps, robots & hreflang
  • llms.txt & machine-readable content
  • Semantic HTML & JS-free content
  • Consent banner (CMP) & trackers
  • Cookies set before consent
  • Privacy, cookie & terms documents

Not just another scanner

A scan tells you what is wrong. We make it right.

Free scanners hand you 47 warnings and walk away. You are left guessing what is actually dangerous, what it costs to fix, and who will fix it. We answer all three.

Plain-language report

No wall of CVEs. Just what is genuinely risky, ranked, with the business impact spelled out.

Fixed by our studio

We do not only report the hole — we patch it. Being a web studio is our unfair advantage.

Kept that way

Continuous monitoring re-checks SSL, DNS, ports and technologies, and alerts you before problems return.

How it works

Four steps, one outcome.

01

Check

Enter a domain. We run a passive audit — legal on any site, no intrusion — and score security, SEO, AI-readiness and GDPR.

02

Understand

You get a clear report: what is critical, what can wait, and what each finding means for your business.

03

Fix

After you verify domain ownership, we run a deeper active audit and remediate the findings ourselves.

04

Monitor

We keep re-scanning on a schedule and flag regressions, expiring certificates and new exposures.

What we check

One audit, four angles.

Security

  • TLS & security headers
  • DNS, SPF, DKIM, DMARC
  • Exposed files & admin panels
  • Outdated public technologies
  • Open ports & known CVEs (active)

SEO

  • Indexability & metadata
  • Structured data & schema
  • Sitemaps, canonicals, hreflang
  • On-page & content signals

AI-readiness

  • llms.txt & machine-readable content
  • Semantic HTML & structured data
  • Content reachable without JS
  • Feeds, authorship, freshness

GDPR / ePrivacy

  • Privacy, terms & cookie policy
  • Consent banner (CMP) detection
  • Cookies & trackers before consent
  • Transport & email security

Plans

Start free. Scale when it pays off.

Security Snapshot
Free
Passive audit: TLS, headers, DNS/SPF/DMARC, outdated tech, reputation and a baseline score. Your lead-in.
Get Snapshot
Automated Audit
from 249PLN
After domain verification: active scan, PDF report, Critical→Low priorities and concrete recommendations.
Request
Continuous Monitoring
from 99PLN / mo
Scheduled re-checks, alerts, history, SSL/DNS/port/tech tracking and retests after changes.
Request
Agency White-Label
from 499PLN / mo
Dozens of domains, reports with your logo, API/panel, alerts and remediation on demand — resold as your own.
Talk to us

Prices from, in PLN. A vulnerability-management service — not a compliance certificate.

Get started

Request a free Security Snapshot.

Tell us your domain — we will send back a plain-language snapshot of where your site stands.