Public report — anyone with the link can see this.
AWATERTIGHT

audit: dayzero.click0 issues · score 100/100 · scanned in 4s

PASS

HTTPS everywhere

The site is served over HTTPS.

The bar is on the floor, but you cleared it.

Re-scan this app →

Closed beta · coming next

This was the surface. The deep scan goes deeper.

This grade reads what a browser can download. The deep scan goes where the leaks actually live — your repo’s secret history, your Supabase access rules, your dependency tree, and your Next/Vercel config. The checks that need to understand the stack, not just the page.

Deep mode only ever runs on apps you prove you own — a DNS record or a file on your domain. It scans what you asked it to, nothing else.

What would you most want the deep scan to check?