Skip to content

Frequently Asked Questions

Everything you need to know about Driftguard.

Who is Driftguard for?

For anyone running their own digital product – from solo founders to SaaS companies with 500 employees. CTOs, founders, platform engineers, and DevOps teams who want to keep oversight of their infrastructure.

Do I need a security team for this?

No. Driftguard is for teams that want oversight – not for SOC analysts. If you use AWS, Cloudflare, or similar and manage domains, Driftguard is for you.

What exactly is monitored?

Currently: DNS records (A, AAAA, CNAME, MX, NS, SPF, DKIM, DMARC, CAA) and TLS certificates (issuer, SANs, expiration, CT logs). More features coming soon.

Do I need agents on my servers?

No. DNS and TLS monitoring works completely from the outside. The only thing you do: set a short verification record so Driftguard knows the domain is yours. After that, everything runs automatically.

How many domains can I monitor?

Unlimited. The Early Access plan includes the full feature set with no domain limit.

What happens when Driftguard detects a deviation?

You get an alert with full context – what it was before, what it is now, when it was detected. Expected change? Acknowledge it and set a new baseline. Unexpected change? Act immediately. Both are logged without gaps.

Does Driftguard help with ISO 27001?

Yes. Driftguard provides a complete audit trail of all changes to your DNS and TLS infrastructure. Every change, every acknowledgment is logged – exactly what auditors want to see.

Is Driftguard GDPR compliant?

Yes. Driftguard runs on AWS in the EU, stores no personal data of your end users, and is operated according to ISO/IEC 27001 principles.

What does Driftguard cost?

Driftguard is currently in Early Access and completely free – full feature set, no credit card required, no fine print.

Still have questions?

We're happy to help. Secure Early Access or book a short call.