Smarter sites, safer businesses — no strings attached.
A free, plain-English self-check across four areas — answer what applies to your business, skip what doesn't. Nothing you enter leaves your browser. Free for any business, whether you're a Cys Infotech client or not.
Applies to every business with a website.
Applies if you ever take a customer's card, online or in person.
Applies to dental, medical, med spa, and similar practices.
Applies to any website that collects visitor information.
This is a self-check built from widely-known, general best practices — not a certified audit, and not legal advice. A clean result here doesn't mean you're PCI-DSS, HIPAA, WCAG, or GDPR compliant; that requires a qualified assessor or attorney reviewing your actual business. Nothing you answer here leaves your browser.
We want to be upfront about what a self-check like this can and can't tell you:
See also our free automated Security Health Check — a related but different check, focused on your website's technical security configuration rather than compliance/regulatory basics.
Want the real-world context behind these questions? See GRC Insights — grounded scenarios showing where a local business actually has a gap, and what closing it looks like in practice.