Tracking Script Detection
Detect Google Analytics, Meta Pixel, Hotjar, and 30+ analytics trackers that may violate HIPAA when used without a Business Associate Agreement.
Detect tracking scripts, PHI exposure, missing security headers, and more — in seconds. Free scan, no signup required.
No account needed. No agent to install. Just a URL and seconds to spare.
Paste any website URL — your own site, a client's, or a vendor portal. We handle the rest.
Our engine fetches publicly visible HTML and HTTP headers, then runs 7 compliance checks in parallel.
Receive a risk score, severity-ranked findings, and actionable fix recommendations in seconds.
Every scan runs all checks automatically — no configuration required.
Detect Google Analytics, Meta Pixel, Hotjar, and 30+ analytics trackers that may violate HIPAA when used without a Business Associate Agreement.
Find forms collecting protected health information — names, DOBs, conditions, insurance — without proper encryption or safeguards.
Check for HSTS, Content Security Policy, X-Frame-Options, X-Content-Type-Options, and other critical HTTP security headers.
Verify certificate validity, TLS version compliance, HTTPS redirect configuration, and HSTS preloading status.
Identify tracking and session cookies, check for missing Secure and HttpOnly flags, and flag third-party cookie injection.
Cross-reference all external scripts and resources against a database of known services without available Business Associate Agreements.
Start free. Upgrade when you need automated monitoring and alerts.
Everything you need to know about HIPAA Guard.
In-depth guides and checklists for healthcare organizations
Run your first scan in seconds. No account, no credit card.
Free forever. No credit card required.