Free scan — no credit card

ButWhy.Cloud

Because your cloud is a mess.

130+ checks across 6 modules. Entra ID · Azure · Email · Endpoints · Copilot · SharePoint. Results in 20-30 minutes.

🔒 Read-only 🗑️ Zero data stored ⚡ 20-30 min
🔴 Recent findings from anonymous scans
Loading... Critical

What we scan

6 modules. One scan.

🔑

Entra ID

MFA gaps, Global Admins, legacy auth, Conditional Access, PIM

52 checks · Live
☁️

Azure Infrastructure

Open ports, NSGs, public blobs, Key Vault, SQL, VMs, Defender

28 checks · Live
📧

Email Security

SPF, DKIM, DMARC, Safe Links, Safe Attachments, external forwarding

22 checks · Live
💻

Endpoint & Devices

Intune compliance, BitLocker, MDE, tamper protection, ASR rules, LAPS

20 checks · Live
🤖

Copilot & AI

License governance, SharePoint sharing, DLP policies, Azure OpenAI public access

5 checks · Live
📁

SharePoint & OneDrive

Anonymous sharing links, external resharing, guest access, default link types

3 checks · Live
🛡️

DLP / Purview

Credit cards, ZA ID numbers, sensitive labels, retention policies

Coming Soon
⚙️

DevOps & IaC

Azure DevOps PATs, AKS security, App Services, Function Apps, pipeline protection

Coming Soon

Pricing

Free to start. Paid when it counts.

Free
$0
1 scan every 30 days
  • 130+ checks · 6 modules
  • Risk & compliance scorecard
  • Top 5 critical findings
  • Remaining findings (locked)
  • Watermarked PDF report
  • Weekly scan allowance
Starter
$79
per month
  • 130+ checks · 6 modules
  • All findings unlocked
  • Full evidence detail
  • Step-by-step remediation
  • ISO 27001 & NIST CSF mapping
  • Full PDF + CSV + JSON export
  • Weekly scan allowance
Get Started

All paid plans billed monthly in USD · Cancel anytime · No setup fees

🛡️ Read-only permissions — we cannot change anything 📧 Report delivered to your email only 🔑 Revoke consent anytime via Entra ID > Enterprise Applications 🗑️ Scan data deleted after report delivery