Built to be useful.
Not to capture leads.
These tools run entirely in your browser. Nothing you enter is transmitted, stored, or tracked. Use them as many times as you want. If they surface something you need professional help with, you know where to find us.
SPRS Score Estimator
Walk through all 110 NIST 800-171 controls with DoD-weighted scoring. Get an instant SPRS estimate and domain-by-domain breakdown of where you're losing points.
Open tool → All OrganizationsEmail Header Analyzer
Paste raw email headers and get a plain-English SPF, DKIM, and DMARC verdict, hop-by-hop routing, and phishing indicators. Nothing leaves your browser.
Open tool → All OrganizationsCyber Insurance Readiness Checker
Check your security posture against the controls insurers actually require at underwriting: MFA, EDR, backups, email security, patching, and incident response.
Open tool → Defense ContractorsCMMC Control-to-Service Map
An interactive matrix showing which of the 110 NIST 800-171 controls each managed security service satisfies — filterable by domain, useful for gap planning.
Open tool → Defense & HealthcareThreat Feed
Recently confirmed actively-exploited vulnerabilities from the CISA Known Exploited Vulnerabilities catalog, refreshed automatically with every site deploy.
Open tool → All OrganizationsSecurity Header Checker
Paste your site's HTTP response headers and get a scored breakdown against CSP, HSTS, X-Frame-Options, Referrer-Policy, and Permissions-Policy best practices.
Open tool →Why are these free?
ByteTempest builds these tools for the same reason we run TempestVitals and TempestYouth — because the organizations that need good security the most are often the ones with the least access to good information about it. If a free tool helps a defense contractor understand their SPRS score before they can afford a full engagement, that is a better outcome for the defense supply chain whether or not they ever become a client.