Inspect performs structured discovery against a vendor’s public and authenticated surface area using a headless browser. It validates attestations, extracts evidence from trust centers, and captures screenshots and artifacts with full chain-of-custody metadata.Documentation Index
Fetch the complete documentation index at: https://docs.coverbase.com/llms.txt
Use this file to discover all available pages before exploring further.
What it does
Trust center extraction
Parse vendor trust centers (Drata, Vanta, SafeBase, custom portals) to extract published controls, certifications, and evidence references.
Attestation validation
Convert claims into verified evidence by checking attestation pages, audit reports, and certificate registries directly.
Chain-of-custody capture
Record screenshots, source URLs, timestamps, and request metadata for every artifact so audit trails are defensible.
Authenticated discovery
Accept auth context (cookies, credentials, SSO tokens) where required so Inspect can reach evidence behind login walls.
How to integrate
Inspect accepts inspection plans and returns structured findings suitable for ingestion into an assessment record.Inspection plans
Specify target domains, evidence types, and auth context for each plan.
Structured findings
Results return as structured records that map directly to Coverbase evaluations, with citations and captured artifacts attached.
Common workflows
Eliminate manual vendor follow-up
Eliminate manual vendor follow-up
Instead of emailing a vendor for proof of encryption at rest, Inspect pulls the relevant section from their SOC 2 in the trust center, captures it with chain-of-custody metadata, and attaches it to the evaluation.
Reassessment refresh
Reassessment refresh
On scheduled reassessment, Inspect re-runs against the vendor’s trust center surface. Changes in published evidence (updated SOC 2, expired certifications, new subprocessors) flow into delta detection automatically.
Pre-intake screening
Pre-intake screening
Run Inspect before sending a questionnaire. If the vendor’s trust center already answers 60% of your controls, the questionnaire can be scoped down to the gaps.
Inspect is currently available as part of the Coverbase platform. Programmatic plan submission via API is on the near-term roadmap. Talk to your account manager about early access.