Breach Readiness Interview

Fifteen minutes. Six domains. No pitch.

Eva asks the questions a security consultant would ask in a first meeting. A deterministic engine — not the model — scores your answers. You get a real result, whether or not you leave contact info.

This is not an audit, a penetration test, a legal opinion, or a certification. It does not tell you that you are secure.

What happens to your answers.

This interview runs in your browser. Your answers are kept in session storage on your device and are erased when you close the tab — we don’t have an account for you, and there’s nothing to log into. To conduct the interview, what you type is sent to a language model through our server and processed in real time. We don’t store it, we don’t train on it, and we don’t attach it to your identity. We don’t ask for your company name, your domain, or any system detail — and if you offer them, Eva will tell you to keep it general.

Why we’re telling you this. You’re about to answer questions about how your company handles data. A tool that asked you that while being vague about its own handling wouldn’t deserve the answers.