What do you like best about Feroot Security?
Having used Feroot in various roles alongside a number of other tools over the years, I’ve found Feroot to be both a breath of fresh air and one of the strongest products for handling recurring automated scans of client-side issues. It focuses on what users actually experience in the browser, including the behavior of privacy controls.
Feroot offers both an enterprise SaaS platform and a more limited but still extremely good free Chrome website auditing addon. The SaaS product supports geo-selected scans across privacy and security use cases. On the privacy side, this includes identifying trackers and cookies along with their various GDPR style categorizations, visualizing script loading and tracker firing chains, auditing cross-border data transfers, and validating privacy banner functionality. On the security side, it can surface issues such as CSP misconfigurations and package vulnerabilities.
The Chrome add-on is particularly useful for fast, one-off checks while actively browsing a page. It makes it easy to see exactly what is firing in real time, verify whether a privacy banner is functioning correctly, and perform in-the-moment testing far more efficiently.
For long-term governance and auditing, the SaaS scans provide automated monitoring with the ability to flag issues and trigger actions such as creating tickets for remediation. These can be run at any frequency you want, i.e. weekly, monthly, etc. Scan results and logs can also be forwarded into existing internal logging or monitoring tools; I’ve seen this integrated successfully with platforms like Datadog.
Overall every time I've worked with Feroot and Feroot Support Eng to configure the platform it's been extremely smooth, including with rapid feature improvements to support more specific use-cases.
I often recommend Feroot to both technical and non-technical privacy and security professionals, especially recommending the free addon as a starting point. Review collected by and hosted on G2.com.