Compliance
Compliance Reports and Auditor Sharing
What the Compliance plan adds
The Compliance plan turns your monitoring history into auditor-ready evidence. It adds a compliance dashboard, downloadable evidence packs, and time-bounded read-only access for outside auditors. (These features return an upgrade prompt on other plans; see the Billing page for current Compliance pricing.)
Compliance dashboard
For a client, open Clients → Compliance (/app/clients/compliance/). It maps your checks to common framework controls (for example SOC 2, HIPAA, PCI, NIST, GDPR Article 32, FedRAMP) and shows, over a 3-, 6-, or 12-month audit period: per-control pass rates, how many endpoints passed, and the top findings (worst-failing endpoints and certificate status).
Evidence packs
Generate an evidence pack for a control to produce an auditor-grade ZIP: a summary PDF, the raw check and domain-registration CSVs, and a SHA-256 manifest so the contents are tamper-evident. The download link is valid for 30 days.
Sharing with an auditor
Under Clients → Compliance → Share (/app/clients/compliance/share/), mint a read-only seat for an external auditor — no Merlonix account needed. They receive a one-click link to the read-only dashboard and evidence packs, valid for 30, 60, or 90 days. Every seat keeps an activity log (what was viewed or downloaded, when, and from which IP), and an owner or admin can revoke a seat at any time.
Try it on your own sites
Point Merlonix at your client domains and watch SSL, DNS, uptime, and vendor status from one dashboard. Start the full workspace free, no credit card.