FORENSIC AUDIT TOOL

Evidence of what websites actually do.

WebSentinel produces court-ready forensic records of every privacy-relevant event a site fires. The same detection engine powers three products: evidence bundles for litigators and regulators, a continuous compliance platform for in-house teams, and one-off audit reports.

Talk to us See the products 3 PRODUCTS · 1 ENGINE

PRODUCTS

One engine. Three ways to use the evidence.

Each product is built on the same forensic detection core. What differs is who the buyer is, how they take delivery, and what the evidence is for.

01 · OFFENSIVE

Evidence bundles for litigation and enforcement

For class-action litigators, regulators, legislators, and individuals who need forensic evidence to file claims, develop enforcement measures, or close legislative gaps.

WHAT YOU GET

  • Cryptographically signed chain of evidence
  • Expert witness statement covering the findings
  • Supporting documentation explaining the data and its evidentiary use

PRICING

Per bundle, per matter

Request an evidence bundle

02 · COMPLIANCE PLATFORM

Continuous independent ground truth for privacy teams

For in-house privacy and compliance teams (CPOs, DPOs, GCs, CISOs) at mid-to-large regulated organisations who cannot rely on stakeholder self-attestation.

WHAT YOU GET

  • Continuous scanning across the portfolio
  • Vendor and third-party intelligence
  • JS library SBOM with integrity hashes and drift detection
  • Framework-mapped findings, policy-vs-reality divergence reports, change detection
  • Audience-appropriate exports for engineering, legal, and the board

PRICING

Monthly or annual subscription, volume-based

Request SaaS access

03 · ONE-OFF REPORTS

Point-in-time forensic audits, no commitment

For organisations that want an independent third-party assessment of a specific property or campaign, without taking on a SaaS commitment.

WHAT YOU GET

  • Forensic audit report covering the agreed scope
  • Same detection depth as the Compliance Platform
  • Findings mapped to applicable legal frameworks
  • Optional add-on: expert witness statement (as in Offensive)

PRICING

Custom per engagement, by page count

Request a custom quote

DIFFERENTIATION

Coverage incumbents cannot match.

PRIVACY VECTOR LANDSCAPE COVERAGE

OneTrust, TrustArc, Cookiebot, Ensighten, Usercentrics 5–10%
WebSentinel 100%
Plus supply-chain integrity layer

The incumbent compliance vendors grew out of cookie-banner deployment. Their technical floor is shallow because that was never their core capability. Cookie-jar scrape captures roughly five to ten per cent of what a modern web page actually does to the visitor. Everything beyond that — runtime fingerprinting, sensor access, timing side channels, worker-side network traffic, supply-chain mutations — is invisible to them.

WebSentinel covers the complete privacy vector landscape and adds the supply-chain integrity layer needed to detect silent post-deployment changes. When the regulator asks, when opposing counsel asks, when the board asks — the answer is grounded in evidence the auditor controls, not in self-attestation by the team that deployed the code.

WHY DEPTH MATTERS

Independent evidence, every surface, every release.

Privacy and compliance teams are expected to certify that their organisation complies with applicable law across every digital property. In practice they rely on stakeholders with competing incentives to self-report what runs and where. Marketing deploys tags through a tag manager without privacy review. Engineering ships third-party SDKs without disclosing them in the data-flow register. Vendors add sub-processors without notifying the customer. Tag managers can mutate silently after deployment.

WebSentinel closes that information asymmetry. Every finding is timestamped, attributed to the responsible script with full call stacks, and assembled into evidence suitable for legal and compliance use. Every scan is reproducible. Every export carries chain-of-custody metadata. The output is forensic-grade by default, not by upgrade.

The same evidentiary discipline serves three audiences. A litigator needs natural, unstaged evidence the court will accept. A privacy team needs continuous independent ground truth they can act on internally. A company commissioning a third-party audit needs a defensible point-in-time record. All three sit on the same forensic core.

The detection engine is the moat. Nobody else doing compliance work has built it at this depth, because it requires privacy research competence the adtech-adjacent vendors do not have.

NEXT STEP

Tell us what you need to prove.

Litigation matter, internal audit programme, or one-off report — describe the scope and we will come back with the right product flavour and a price.