FAQ

Frequently asked questions

If something is not covered here, create an account and try it — the free plan shows the complete product.

What does A1 Cloud Guard scan?

Amazon AWS, Microsoft Azure, Google Cloud, Kubernetes clusters, Linux hosts over SSH, and web applications — 194 services in total across the six platforms.

Does A1 Cloud Guard need write access to my cloud account?

No. Every check is read-only. On AWS a cross-account role with an external ID is recommended; on Azure a Reader service principal and on Google Cloud a Viewer plus Security Reviewer service account are enough.

How are my cloud credentials stored?

Each secret is encrypted with AES-256-GCM before it is written to the database, and is never returned to the browser after saving. Access is scoped to your organization.

Can I scan a website I do not own?

No. A web target must pass domain verification before any scan can run against it.

Can I schedule scans?

Yes, on the Teams plan and above. Scans can run once at a chosen time, or repeat daily, weekly or monthly.

How do I get findings into Slack or Jira?

Add an integration under Settings. Slack, Microsoft Teams, Google Chat, PagerDuty, Jira, custom webhooks and email are supported, and each one can subscribe to specific events.

Is there a free plan?

Yes. The Individual Free plan includes one scan per month per platform, run on demand, for a single user.

Still deciding?

The free plan is the fastest way to see whether the findings are useful for your estate.