Full URLs may leak via Referer header to third parties.
A read-only public-posture snapshot. We hit yeswehack.com the way any anonymous visitor would, recorded what came back, and graded it against modern best practices. This is not a pen test — it covers maybe 5% of what a real assessment would look at. If you own this domain and want the other 95%, the free scan is below.
Across 183 publicly-known SaaS targets we've snapshotted, 36% sit at grade A, and 0% score higher. The grade is absolute, not relative — but seeing where peers cluster makes it concrete.
Full URLs may leak via Referer header to third parties.
Removes a small recon step for attackers.
The full free scan runs ~600 nuclei templates against yeswehack.com, checks the authenticated TLS surface, audits headers and DNS, and emails you a PDF with prioritized findings + fix instructions. Three minutes, no signup.
Run the free scan →This snapshot is a public read-only view, like loading the site in a browser. We did not run vulnerability templates, did not test authenticated endpoints, did not attempt to bypass any controls. The data shown is observable by anyone with curl. If you own yeswehack.com and want this page removed or refreshed, email security@thecybergrid.com.