PrivBeacon
Get Started
Guides

On-prem scanner agent

Run scans on a local network or Raspberry Pi. Reports stay on disk unless you turn on optional sync.

What it is

The PrivBeacon on-prem agent is a small Node scanner for air-gapped networks, labs, and Raspberry Pi. Pro or Enterprise is required for dashboard setup, API keys, and optional cloud sync. The agent code is published at https://github.com/Vassbrekke/PrivBeacon-On-Prem.

It is offline-first. Reports are stored locally (data/reports.json). Nothing leaves the network unless you set PRIVBEACON_API_KEY and PRIVBEACON_SYNC_URL. Optional sync posts URL, scores, tracker/consent findings, and a 480-character snippet — not screenshots, form values, or full HTML. Use an agent-scoped, revocable API key. Subnet scans are RFC1918 /24–/32 only; you must be authorized to scan that network.

What we do not claim

Publishing the source lets you inspect it. That is not the same as an independent third-party security audit. We have not published a pentest of the agent.

Typical use

Install Node.js 18+, clone https://github.com/Vassbrekke/PrivBeacon-On-Prem, run scans against a URL or subnet, and export JSON for USB transfer. Hardware notes and commands live in that repository README.

Related solutions

Related guides

PrivBeacon provides automated privacy scans and document templates for informational purposes only. This is not legal advice. Consult qualified legal counsel before relying on generated policies or compliance scores for regulatory decisions.