About the Pulxon scanner
If you found PulxonScanner/1.0 in your server logs, someone asked Pulxon to run automated accessibility checks on one of your public pages.
What the scanner does
- It loads a single public page in a headless Chromium browser, the same way a visitor would.
- It runs automated WCAG 2.2 checks with the open-source axe-core engine and takes screenshots of the page.
- It does not sign in, submit forms, follow links to other pages or try to reach private networks.
- Each check is started by a person: with the free checker, from a site owner's weekly monitoring, or through our API. Repeat checks of the same page from the free checker are served from a cache for 24 hours.
What we store
We keep the results and screenshots of public page content for 90 days and then delete them automatically.
Let the scanner through your bot protection
Services such as Cloudflare, Akamai and Imperva often block browsers that run in a data center, so the check stops with “This website blocks automated visits”. If it is your website, allow requests that come from our scanner's address and carry its name:
- IP address:
34.42.11.10 - User agent contains:
PulxonScanner
In Cloudflare, open Security, then WAF, and add a custom rule with the action “Skip” for requests where the IP source address is the address above and the user agent contains PulxonScanner. Match both, because anyone can copy a user agent. In Akamai and Imperva, add the address to the allow list of your bot manager.
Contact
To ask a question or to ask us to stop checking your site, email [email protected].