Skip to content

Network security checks across 5 apps

IP allow-lists, TLS, DNS and edge settings that keep the application reachable only from where it should be.

Why it matters

IP allow-lists, TLS versions and DNS settings decide from where an application can be reached at all. They drift when a vendor changes a default or an admin opens access for a contractor and never closes it, and nobody notices until a scan compares the tenant with the baseline.

Browse by app

Highest-severity checks

The 8 most severe Network security checks across all 5 apps — each links to the connector page where the setting, its remediation and its framework mapping are documented.

  1. Cloud SQL Authorized Networks Open to World — Google Cloud severity: critical
  2. No Firewall — DigitalOcean severity: critical
  3. Publicly Accessible — DigitalOcean severity: critical
  4. SSH Open To All — DigitalOcean severity: critical
  5. Allows All Inbound — DigitalOcean severity: high
  6. Cloud Function Public Ingress — Google Cloud severity: high
  7. Cloud Run Service Public Ingress — Google Cloud severity: high
  8. DNSSEC Not Enabled — Akamai severity: high

Where to start

Connect DigitalOcean first — it carries the most Network security checks in the catalog(setup guide, read-only access). A first scan takes about 15 minutes and reports every failing check on this page with its remediation steps.

All topics · Browse by app

The information on this page is provided for general informational purposes and is believed to be accurate as of its most recent update. Product names, logos, and trademarks are the property of their respective owners and are used for identification purposes only; their use does not imply any affiliation with or endorsement by those owners. Descriptions of third-party applications and of compliance frameworks are based on publicly available documentation and may change over time.

See these checks run on your stack

Start a free 14-day trial — no credit card required.

Start Free Trial