Works with the stack you already built. Nothing to migrate.
RunAssured detects your stack from just your web address, connects read-only to the systems it runs on, and monitors every layer: hosting, the edge, your database, payments, email, your code and the AI it calls. You bring what you built; Critical Cloud operates it where it lives.
Detected automatically from your web address, then connected read-only when you are ready. We only show logos for systems we actually work with. If we detect something we do not yet support, we say so plainly rather than guess.
01
What we monitor, layer by layer.
Each system you connect is read by a dedicated analyser that knows what good looks like for it. Here is what we watch on each.
Front end & hosting
Vercel
Netlify
Lovable
Replit
Bolt
Every release becomes a visible event, so an outage can be lined up against the deploy that caused it.
Environment-variable posture: the names and where they run, never the values.
Secrets accidentally shipped to the browser (public-prefixed keys named like real secrets).
Where real-user monitoring can be injected, chosen to fit how you are hosted.
Network edge & DNS
Cloudflare
Plain web traffic forced to HTTPS, and a modern minimum TLS version.
Basic automated-bot mitigation, on or off.
Whether logs can be streamed out for monitoring on your current plan.
Every public entry point to your app, pulled from DNS.
Database
Supabase
Postgres
Backups and point-in-time recovery: your true recovery exposure.
Row-level security coverage: exactly which tables are exposed between customers.
Database functions that can quietly bypass those isolation rules.
Scheduled (cron) jobs, and whether a silent failure would raise a flag.
Payments
Stripe
Live mode with active paying subscriptions, as evidence of a real business.
Read-only throughout: a restricted key, never write access to your account.
Email
Resend
Sending-domain verification and SPF, DKIM and DMARC posture.
Spoofing gaps flagged, with a safe DMARC ramp recommended so you never block your own mail.
Code & dependencies
GitHub
Out-of-date libraries with known security holes, checked against a public vulnerability database.
Credentials committed into your repository, and config files that leak your setup.
How much of your app the AI builder is rewriting, from the commit history.
Connected read-only, and re-checked automatically every time your app changes.
AI providers
OpenAI
Anthropic
Google
Where your code calls an AI service, drawn from the code itself, not from memory.
Which providers and which specific models, by file path and model name.
Identity & directory
WorkOS
SSO connections, directory syncs and event-webhook endpoints.
A read-only posture capture for the identity questions your buyers will ask.
Tools you already run
Sentry
Aikido
Spots the error-tracking and code-security tools you already pay for.
A deliberate keep, replace, or run-alongside decision, never accidental duplication.
02
Powered by Datadog. The platform underneath it all.
Your monitoring, alerting and evidence run on Datadog. Critical Cloud is a Datadog partner and the first Powered by Datadog accredited MSP.
Datadog
When you connect an existing Datadog account, we read your current monitors and dashboards first, so when Critical Cloud takes over, nothing double-pages and nothing silently stops paging. Your data stays on Datadog’s EU site.
03
If we cannot see it, we say so.
Coverage is only useful if it is honest.
Every finding carries the evidence behind it, a severity and a confidence level, and we draw a firm line between “we checked and it is fine” and “we could not check”, shown plainly as no data rather than a false all-clear. If your access lets us see several projects and none is clearly the live one, we stop and ask rather than assessing the wrong database.
See your stack the way a buyer would. Connect read-only, no cost to look.
Point us at your app and we will show you exactly what we can see and monitor.