# CyberLens AI — Full Content for AI Systems > CyberLens AI is a free-first security scanner for solo developers, agencies, and AI builders. After a 1-click signup, run a free website scan for a security grade, evidence-backed findings, top remediation steps, and an AI risk summary—usually in about a minute. This file (llms-full.txt) provides the full text of CyberLens AI's key pages so AI systems can understand the product without rendering JavaScript. The shorter index is at https://www.cyberlensai.com/llms.txt Last updated: 2026-09-17 --- ## What CyberLens AI is CyberLens AI helps developers, agencies, and AI builders scan websites, repositories, and CLAW/OpenClaw skills for practical security risks before they ship or trust them. It returns a security grade, visible finding names, severity levels, top remediation steps, plain-English remediation guidance, and an AI risk summary on every scan. It is a practical scanner and remediation assistant — **not** a compliance certification tool and **not** a replacement for a full penetration test. Users should only scan websites and assets they own or are authorized to test. ## What CyberLens AI checks - Passive HTTPS / TLS configuration and certificate signals - Security headers (HSTS, CSP, X-Frame-Options, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, and related) - Cookie security baseline - Website Integrity Scanner v1.0.1: raw HTTP versus browser-rendered DOM comparison, computed hidden/off-screen content analysis, topic and outbound-link correlation, WordPress public-source matching, and historical clean-to-affected boundaries for high-confidence findings - Premium historical integrity escalation that estimates last-known-clean and first-known-affected snapshots when public archive evidence is available - Scheduled scans on every plan that rerun Website Integrity checks so later, publicly observable hidden SEO spam or malicious outbound-link injections can be surfaced on the next scheduled run; Premium and Agency add daily frequency and historical incident-boundary analysis - Passive database leak detection from public evidence; read-only database checks when a managed read-only role is connected - Repository scanning for exposed secrets, dependency risks, and risky code patterns - Dedicated malicious-code detection across 13 hostile-code categories (reverse shells, in-memory loaders, persistence/droppers, cryptominers, RAT C2 endpoints, process injection, DLL search-order hijack, polyglot payloads, steganographic exfiltration, runtime typosquats, credential grabbers, keyloggers, and anti-analysis tricks) - AI builder workflow review (CLAW / OpenClaw skills) - CyberLensAI Chrome and Firefox extensions for a private active-tab quick check or a full account-backed cloud scan ## Who it is for - Solo developers and indie founders shipping fast - Agencies running security checks across many client sites - AI builders and "vibe coders" who want to scan AI-generated code and apps before trusting them ## Pricing CyberLens AI is free-first. Monthly prices (annual billing is roughly ten months' cost): - **Free — $0/mo:** 5 total scans per month (website + repository), weekly Website Integrity monitoring for one site, passive HTTPS/headers/cookie baseline, AI risk paragraph on every scan, AI Insights preview, passive database leak detection, repository scanning for secrets/dependencies/risky patterns, malicious-code detection (all 13 categories), and 1 API key. - **Starter — $12/mo:** 30 scans per month, weekly Website Integrity monitoring for up to three sites, expanded passive web checks, passive database signals plus read-only database checks when connected, repository scanning with scan history and trend tracking, malicious-code detection across all categories, more API keys, and email support. - **Advanced — $25/mo:** 100 scans per month, weekly or monthly Website Integrity monitoring for up to eight sites, full AI Insights, deeper repository scanning, and higher limits. - **Premium — $49/mo:** 250 scans per month, unlimited monitored sites with daily, weekly, or monthly Website Integrity schedules, historical incident-boundary analysis, exports, and priority remediation guidance. - **Agency — $149/mo:** 750 scans per month, unlimited client-site monitoring with daily, weekly, or monthly schedules, historical incident-boundary analysis, agency workflows, API access, and the highest limits. Paid plans unlock full AI Insights, deeper remediation, attack-vector correlation, code-level recommendations, expanded scheduled-monitoring limits and frequencies, exports, agency workflows, higher limits, repository scan depth, and API access. ## Frequently asked questions **What is CyberLens AI?** CyberLens AI is a security scanner for websites, repositories, and AI builder workflows. It gives builders a security grade, visible findings, severity levels, top remediation steps, and plain-English remediation guidance. **What does the free website scan include?** A grade and score, visible finding names, severity levels, top remediation steps, an AI risk summary, and a shareable scan result page. **Does CyberLens AI replace a penetration test?** No. CyberLens AI is a practical scanner and remediation assistant, not a compliance certification tool or a replacement for a full penetration test. **Is my scan data secure?** CyberLens AI stores the report and bounded evidence needed to explain findings, such as short excerpts and, only for suspicious integrity signals, a private screenshot. It does not submit forms, log in to the target, store target credentials, or modify the scanned website. Users should only scan websites and assets they own or are authorized to test. **What do paid plans unlock?** Full AI Insights, deeper remediation, attack-vector correlation, code-level recommendations, expanded scheduled-monitoring limits and frequencies, exports, agency workflows, higher limits, repository scan depth, and API access. **Can CyberLens AI detect hidden SEO spam or injected outbound links?** Yes. Website Integrity Scanner v1.0.1 compares raw HTML with a Chromium-rendered page and correlates computed concealment, unrelated topics, suspicious external destinations, and public WordPress source evidence. High-confidence reports separate observed facts, assessment, confidence, evidence sources, unknowns, and remediation. **Will scheduled scans catch malicious content injected after a site changes?** Yes. Every plan can schedule Website Integrity scans within its site and frequency limits. If a compromised plugin, account, theme, deployment, or content change introduces publicly observable hidden spam, off-screen text, or unrelated outbound links, the next scheduled run can surface the finding and preserve it in scan history. Premium and Agency add daily schedules and historical incident-boundary analysis. Scheduling is periodic, not continuous monitoring. **Can CyberLens AI show when hidden spam first appeared?** When usable public archive evidence exists, a high-confidence Premium or Agency integrity report can show the last known clean capture, first known affected capture, captures checked, and the uncertainty between snapshots. These dates bound the incident and do not claim an exact insertion time. **How does CyberLens reduce incorrect statements in AI reports?** CyberLens uses evidence-locked reporting. Every model-written finding must cite a valid scanner evidence ID. CyberLens independently assigns severity, issue counts, overall risk, database scope, compliance applicability language, and authoritative references. Unsupported findings are discarded, missing model findings receive deterministic fallback guidance, and uncertainty remains explicit. **Does CyberLens AI have a Chrome extension?** Yes. The CyberLensAI Website Security Scanner can run a private page-level quick check or start a full CyberLensAI cloud scan from the active tab. Chrome Web Store: https://chromewebstore.google.com/detail/cyberlensai-website-secur/cplpokmdenmacgdddgobimpgggbmbgeh **Does CyberLens AI have a Firefox extension?** Yes. The Firefox desktop extension offers private page-level quick checks and optional account-backed cloud scans. Firefox Add-ons: https://addons.mozilla.org/en-US/firefox/addon/cyberlensai-security-scanner/ ## Key pages - Homepage: https://www.cyberlensai.com/ - Pricing: https://www.cyberlensai.com/pricing - Blog: https://www.cyberlensai.com/blog - Remediation guides library: https://www.cyberlensai.com/guidance - Security tests catalog: https://www.cyberlensai.com/security-tests - Security scanner for AI builders: https://www.cyberlensai.com/security-scanner-for-ai-builders - Use case — secure vibe coding: https://www.cyberlensai.com/use-cases/secure-vibe-coding - Compare — free website security scanners: https://www.cyberlensai.com/compare/free-website-security-scanners - Compare — repository security scanners for AI code: https://www.cyberlensai.com/compare/repository-security-scanners-for-ai-code - Compare — OpenClaw skill security scanners: https://www.cyberlensai.com/compare/openclaw-skill-security-scanners - About: https://www.cyberlensai.com/about - Contact: https://www.cyberlensai.com/contact - FAQ: https://www.cyberlensai.com/faq - Chrome extension: https://chromewebstore.google.com/detail/cyberlensai-website-secur/cplpokmdenmacgdddgobimpgggbmbgeh - Firefox extension (desktop): https://addons.mozilla.org/en-US/firefox/addon/cyberlensai-security-scanner/ ## Remediation guides library CyberLens AI publishes answer-first, step-by-step remediation guides at https://www.cyberlensai.com/guidance for the security issues its scanner commonly detects. Guides target real developer questions, include code examples for Vercel, Express, Nginx, and Apache, and cite OWASP, NIST, and CISA standards. Topics include: - How to fix missing security headers (HSTS, CSP, X-Frame-Options, etc.) - How to scan AI-generated code for security vulnerabilities - How to detect malicious code in dependencies - How to fix cross-site scripting (XSS) vulnerabilities - How to scan a website for OWASP Top 10 issues - Free alternatives to a penetration test for small sites - How to scan a git repository for secrets and risky code - How to get a security grade for a website - How to check a website's security headers for free - Security scanning for OpenClaw / CLAW skills - Best security scanner for vibe coding and AI-built apps - Free website security scanners for developers Each guide is structured with a 5-step workflow, platform-specific code fixes, a FAQ section, and citations to OWASP Top 10, NIST Cybersecurity Framework, and CISA KEV resources. ## Security references CyberLens AI's checks and guidance are aligned to widely used public standards: - OWASP Top 10 — https://owasp.org/www-project-top-ten/ - OWASP Application Security Verification Standard (ASVS) — https://owasp.org/www-project-application-security-verification-standard/ - NIST Cybersecurity Framework — https://www.nist.gov/cyberframework - CISA Known Exploited Vulnerabilities Catalog — https://www.cisa.gov/known-exploited-vulnerabilities-catalog