Tessera inventories served payment-page scripts plus SPF, DKIM, and DMARC evidence. Start with a free bounded check; eligible results unlock written remediation or a 72-hour hash-chained ledger. Evidence for qualified review - not a compliance determination.
Hi Product Hunt - Tessera is built and operated by Toledo Technologies LLC.
We built it around a narrow problem: teams can inspect a payment page today, but later need reviewable evidence of what was observed, what changed, and what still requires human judgment.
The free, no-account check inventories scripts in served HTML and can compare observed hosts with an authorized-domain list you supply. It does not execute JavaScript, decide authorization, or determine PCI scope. Only check a page or domain you own or are authorized to inspect.
For complete, eligible results, paid options are a $299 PCI DSS 6.4.3 remediation pack, a $99 PCI DSS 5.4.1 SPF/DKIM/DMARC pack, and a $99/month 11.6.1 ledger that re-evaluates one public HTTPS target every 72 hours and hash-chains the records. Every output is software-generated evidence for qualified review - not certification or a compliance determination.
The public samples are synthetic, so you can inspect the presentation before buying. I would especially value feedback on whether the free inventory makes its limits clear and whether the sample evidence would be usable in a qualified review.