Goddess Fortuna // Security Assessment

Know Your Exposure

A suite of passive and active diagnostic tools scoped exclusively to your own device and connection. No third-party targets. No external scanning. Your machine, your data, your risk profile.

Loading scan mode…

Full Device Assessment

Runs all tools in sequence against your device. Results populate in real time. Total scan time: approximately 20–40 seconds.

Detected IP: detecting...

Security Score

-- /100

IP & Network Identity
Pending

Identifies your public IP, ISP, ASN, country, and checks whether you are routing through a VPN or Tor exit node. Exposes geolocation precision available to any server you connect to.

// Awaiting scan...
WebRTC Leak Detection
Pending

WebRTC can expose your real local and public IP addresses even when behind a VPN. This test uses the browser RTCPeerConnection API to enumerate all bound IP interfaces; the same method a hostile site would use.

// Awaiting scan...
DNS Leak Detection
Pending

Even with a VPN active, DNS queries can bypass the tunnel and reveal your ISP and browsing habits. This test probes which DNS resolver your browser is actually using.

// Awaiting scan...
Browser Fingerprint
Pending

Harvests the same browser attributes a tracking or phishing site would collect: User-Agent, screen resolution, timezone, language, canvas fingerprint entropy, hardware concurrency, and more.

// Awaiting scan...
External Port Discovery Scan telemetry + server Nmap
Pending

The server runs a restricted Nmap scan against your public IP only. Probing the top 100 most common ports. Simulation mode is active by default; set SIMULATION_MODE=false on the server for live results.

// Awaiting scan...
Connection Security (TLS)
Pending

Verifies whether your connection to this server is encrypted, checks for mixed content warnings, validates HTTPS enforcement, and reads security headers from the server response.

// Awaiting scan...
HTTP Security Headers
Pending

Audits the security-relevant HTTP response headers your browser received from this server: CSP, HSTS, X-Frame-Options, Referrer-Policy, Permissions-Policy, and more.

// Awaiting scan...
All scans are performed against your own device and connection only.
No third-party hosts are probed. Results are for educational and personal security awareness purposes only.