Scan safety and opting out
Error codes: SC-OPTOUT
What the scanner does
The scanner (Vigavo/1.0 (+https://vigavo.com/bot)) makes read-only HTTP requests, like a visitor's browser: it loads pages and public files, reads response headers and the JavaScript the site sends to every visitor, and checks DNS and TLS settings. It does not log in, does not submit forms and does not try to exploit anything. It only connects to public internet addresses and limits how many requests it sends to one host at a time.
Checks that go further (for example testing whether a Supabase table accepts writes) run only for a signed-in customer's own project and only with their opt-in.
Opting a domain out
Publish any non-HTML file at /.well-known/vigavo-optout on the domain, or write to abuse@vigavo.com. Scans of an opted-out domain stop with SC-OPTOUT and show no findings. Requests to the opt-out address are honoured for the whole domain, including www..
Reporting abuse
If you believe the scanner misbehaved on your site, use the abuse form on the support page. Those reports always reach the operator.
Last reviewed Oct 7, 2026, 12:00:00 AM