MAYA - AI Agent
Team Leader of AI Agents
Remediation Agent
Runs a dry run, waits for your approval, then fixes it
Evidence Collector
Collects your SOC 2, ISO 27001 and DPDP proof from the tools you already use
IP Scanner
Checks every public address for open ports, known CVEs and weak TLS
DAST (Public + Private)
Tests your APIs for 300+ vulnerability classes, inside and outside the network
CSPM
1,000+ checks across AWS, Azure and Google Cloud, mapped to your frameworks
Cloud Cost Optimization
Rightsizing and idle detection - customers cut cloud spend 28% on average
Integrations
20+ Integrations with your favorite tools
Asset Management
Finds vulnerabilities on your laptops and servers
ECR Container Image Scanning
Scans every ECR image for CVEs before it reaches production
Cloud Security
Keeping AWS, GCP and Azure locked down
AI Governance
Using AI at work without losing control of it
Data Privacy
DPDP, GDPR and looking after personal data
GRC
Audits, controls and staying ready for them
FinOps
Spending less on cloud without breaking things
API Security
Finding holes in your APIs before anyone else
You hold passport numbers. So do six partners you do not control.
Booking flows pass identity documents between airlines, hotels, gateways and aggregators. DeDups maps every API you expose, scans each one for 300+ vulnerability classes, and checks the cloud behind them - so you know exactly where traveller data can leak.
15 minutes to connect. No credit card. No sales call.Covering the OWASP Top 10 and SANS Top 25, run from outside your network and from inside it.
The data travels further than the traveller.
One booking touches your site, a partner API, a payment gateway and a channel manager. Passport numbers, dates of birth and addresses ride along with it. Every handoff is an endpoint, and endpoints get added faster than they get written down.
- Nobody has a complete list of the APIs you expose today.
- An old partner endpoint is still live, still authenticated with a shared key.
- Traveller data crosses borders and nobody has recorded which ones.
Map every endpoint. Then test every one.
Discovery finds the endpoints that never made it into the documentation. Scanning tells you which of them will actually give data away. Both run on a schedule you set.
- 01Discover the APIs you actually run
Endpoints are discovered from your traffic and your collections, including the ones nobody documented and the ones a partner still calls.
- 02Test them properly
Each endpoint is scanned for 300+ vulnerability classes - broken authentication, exposed data, injection, misconfigured access - with every finding mapped to its OWASP category.
- 03Scan what faces the internet
Public IPs are checked for open ports, known CVEs and weak TLS, so a forgotten staging host is not the way in.
- 04Keep the privacy evidence
Findings and fixes become dated evidence mapped to GDPR, the DPDP Act, ISO 27001 and SOC 2 controls.
The numbers, and what sits behind them.
API discovery from live traffic and existing collections
Scanning for 300+ vulnerability classes, OWASP Top 10 and SANS Top 25
A private scanner that runs inside your network for internal endpoints
Public IP scanning for open ports, known CVEs and weak TLS
GDPR, DPDP Act, ISO 27001 and SOC 2 evidence collected as you go
Every finding carries a reproduction request and a suggested fix
Point it at staging first.
Scans are scoped and scheduled by you, and any endpoint can be excluded. Start on staging, read the findings, then decide what to run against production. If a scan causes trouble, you stop it from the screen you started it on.
The questions we get asked most.
Yes. A private scanner runs as a single binary inside your network, so internal endpoints get tested without being exposed to the internet first.
Point it at staging first. Scans are scoped and scheduled by you, any endpoint can be excluded, and a running scan can be stopped from the same screen.
Their breach still has your name on the booking. You cannot test their systems, but you can test every endpoint you expose to them and every key they hold.
Start with your own numbers.
Connect one account. The first scan finishes in about 15 minutes and the report is yours either way - free, no credit card, no sales call. Read it, then decide.
sales@dedups.ai - we reply within 2 hours