Frequently Asked Questions

Find answers to the most common questions about our services

General About Bastion

Bastion is a professional web application security testing platform. We offer free security scans, AI Visibility audits, and professional security repair services. Our mission is to make web security accessible to everyone.

Bastion is a product of SkyFlight d.o.o. from Zagreb, Croatia. The team consists of experienced cybersecurity experts with many years of experience in protecting web applications.

Bastion is designed for anyone who wants to check the security of their website — from individuals and small business owners to large corporations. The free scan is ideal for quick checks, while advanced packages offer detailed analysis for professional needs.

Free Security Scan

Yes! The basic security scan is completely free and requires no registration. You can scan as many pages as you want without any cost.

  • SSL/TLS certificates — validity, configuration, security
  • Security headers — CSP, HSTS, X-Frame-Options, X-Content-Type-Options
  • Cookies — Secure, HttpOnly, SameSite flags
  • CORS configuration — cross-origin policy check

The free scan takes about 30 seconds. You get results immediately on screen along with a grade (A+ to F) and recommendations for improvement.

You can scan websites you own or have permission to test. Scanning third-party websites without authorization may violate terms of service and cybersecurity laws.

AI Visibility Audit

AI Visibility audit analyzes how well your website is optimized for AI assistants like ChatGPT, Claude, and Gemini. We check how AI systems see and understand your page, and provide recommendations for improving visibility.

  • robots.txt — configuration for AI crawlers
  • llms.txt — special file for LLM models
  • Schema.org — structured data
  • Meta tags — Open Graph, Twitter Cards
  • Sitemap — availability and quality
  • Performance — loading speed
  • Content quality — semantic HTML, readability

More and more users are using AI assistants to search for information. If your site isn't optimized for AI, you're missing potential customers. AI Visibility audit helps ensure that AI systems properly understand and recommend your content.

Free audit gives a basic grade (A-F) and category overview.

Paid audit includes:
  • Detailed analysis of all 18 categories
  • Specific improvement recommendations
  • Priority repair list
  • Expert commentary from our team
Check our packages page for current pricing.

Security Modules

  • SQL Injection — testing for SQL injection vulnerabilities
  • XSS Detection — detecting Cross-Site Scripting vulnerabilities
  • CSRF Protection — checking CSRF attack protection
  • Authentication Testing — authentication testing
  • CMS Security — specific tests for WordPress, Joomla, Drupal

Yes! We offer professional repair services. You can purchase individual fixes or complete packages that include fixing all found issues. Our team of experts implements the necessary changes.

Prices depend on the scope of testing. We offer individual modules and complete packages tailored to different needs. Check our packages page for current pricing.

Payment and Orders

We accept all major credit cards (Visa, Mastercard, American Express) through Stripe secure payment system. All transactions are encrypted and secure.

Yes, after a successful purchase, you automatically receive an invoice to your email address. The invoice contains all necessary data for accounting, including company tax ID and VAT.

If you're not satisfied with the service, contact us within 14 days of purchase. We review each request individually and strive to find a satisfactory solution.

Privacy and Security

Absolutely. During scanning, we only access publicly available information. We don't store sensitive data from your website. All communications are encrypted with TLS 1.3 protocol. We are fully GDPR compliant.

Scan results are only available to you. We don't share results with third parties. Anonymous statistical data may be used to improve the service, but without the ability to identify individual pages.

Our servers are located in the European Union, ensuring compliance with GDPR and European data protection standards.

Didn't find your answer?

Our team is here to help. Contact us and we'll respond as soon as possible.

Contact

Cart

Cart is empty


Total: 0 €

* Prices are final. Provider is not in the VAT system (Art. 90, Para. 2, VAT Act).