On-prem scanner agent
Run scans on a local network or Raspberry Pi. Reports stay on disk unless you turn on optional sync.
What it is
The PrivBeacon on-prem agent is a small Node scanner for air-gapped networks, labs, and Raspberry Pi. Pro or Enterprise is required for dashboard setup, API keys, and optional cloud sync. The agent code is published at https://github.com/Vassbrekke/PrivBeacon-On-Prem.
It is offline-first. Reports are stored locally (data/reports.json). Nothing leaves the network unless you set PRIVBEACON_API_KEY and PRIVBEACON_SYNC_URL. Optional sync posts URL, scores, tracker/consent findings, and a 480-character snippet — not screenshots, form values, or full HTML. Use an agent-scoped, revocable API key. Subnet scans are RFC1918 /24–/32 only; you must be authorized to scan that network.
What we do not claim
Publishing the source lets you inspect it. That is not the same as an independent third-party security audit. We have not published a pentest of the agent.
Typical use
Install Node.js 18+, clone https://github.com/Vassbrekke/PrivBeacon-On-Prem, run scans against a URL or subnet, and export JSON for USB transfer. Hardware notes and commands live in that repository README.
Related solutions
Related guides
PrivBeacon provides automated privacy scans and document templates for informational purposes only. This is not legal advice. Consult qualified legal counsel before relying on generated policies or compliance scores for regulatory decisions.