Scanner Information
For site owners and administrators who see our scanner in their web-server logs.
Ralt Health operates an automated website scanner that assesses publicly accessible physician-practice websites for accessibility, security, privacy, and performance. This page explains how it behaves so you can identify our traffic and reach us.
How it accesses sites
Our scanner retrieves publicly accessible pages the same way a standard web browser does. It requests only public resources, reads what the server returns, and performs all analysis on our own systems. It honors your robots.txt directives (including disallowed paths and any crawl-delay) and applies conservative rate limiting and short timeouts so a scan places negligible load on your server.
What it does not do
It does not authenticate to or bypass access controls on any system; it does not log in to patient portals or submit or enter personal information into appointment-request or intake forms; it does not perform vulnerability exploitation, port scanning, or brute-force testing; and it does not request, store, or transmit Protected Health Information. Deeper file-exposure testing is performed only for engaged customers who have authorized it in writing.
Identifying our traffic
If you see requests you would like to confirm are ours, email us the timestamps and your domain and we will verify. We will never ask you to change your firewall or security posture to accommodate our scanning.
Opt out
To exclude your domain from our scanning, email contact@ralthealth.com with the domain. We honor opt-out requests within five business days. You may also block our scanning at any time via robots.txt, which we respect automatically.
Full scanning scope and terms are on our Trust & Security page.