Don't trust your backups. Prove them.
Automated restoration verification. Local execution. Cryptographically signed reports. Your backup data never leaves your infrastructure.
See It in Action
Sixty seconds: test the restore before the incident, and keep the evidence of every test
How It Works
Three simple steps to verify your backups actually restore
Deploy the Runner
Install the RestoreProof Runner on your infrastructure with Docker, or the Helm chart on Kubernetes. It opens an encrypted channel to the Control Plane itself — no inbound port to open on your side.

The app writes the docker run command for you, API key included.
Define Restore Plans
Create restore plans with steps: fetch backup, unpack archive, start sandbox container, restore the database (PostgreSQL, MySQL, MongoDB, LDAP), run integrity checks.

Tell it what the backup holds and where it lives. No credentials leave your infrastructure.
Run Probes & Get Reports
Execute verification probes in isolated containers. Get PASS/WARN/FAIL results with metrics. Reports are signed with Ed25519 for tamper-proof evidence.

Every run ends in a signed report — evidence you can hand to an auditor.
Set it once, then forget it
Put the checks on a schedule, fire them from your backup tool, and keep one number to watch.

Put it on a schedule
Nightly, weekly, monthly or your own cron. The next run is shown before you confirm.

Fire it from your backup tool
Restic, Borg, Veeam, Duplicati, rclone: copy the snippet, paste it after your backup command.

One number to watch
Restorability score, runner fleet and verified backups — the whole state on one screen.
Built for DevOps Teams
Enterprise-grade backup verification without compromising security
Data Never Leaves Your Infra
Backup data and secrets stay local. The Runner executes everything on your infrastructure. Only metadata reaches the Control Plane.
Isolated Probe Containers
Each probe runs in a stateless, ephemeral OCI container. Destroyed immediately after execution. No data persistence, no cross-contamination.
Ten Probes Out of the Box
PostgreSQL, MySQL, MongoDB, SQLite, PocketBase, LDAP, X.509 certificate, HTTP health check, archive integrity and filesystem canary.
Scheduled Runs
Automate verification with cron-like scheduling. Run daily, weekly, or after each backup. Never wonder if your backups work.
Ed25519 Signed Reports
Every report is cryptographically signed. Tamper-proof verification evidence for compliance and audit trails.
Several Runners
Deploy one runner per site, environment or customer, label them to find your way around, and pick the one that runs each test.
Architecture
Strict separation between Control Plane and Data Plane
Control Plane (SaaS)
Data Plane (Runner)
Why RestoreProof?
An untested backup doesn't exist. You might have terabytes of backup data, but without verification, you're hoping, not knowing.
Hope is Not a Strategy
Most teams discover their backups are broken during a real disaster. By then, it's too late.
Proof, Not Hope
Ed25519 signed reports provide cryptographic proof that your backups actually restore. Evidence you can audit.
Automate the Boring Stuff
Scheduled runs mean you verify automatically. No more "we should probably test backups this quarter."
{
"status": "PASS",
"probe": "postgres",
"duration_ms": 1247,
"metrics": {
"tables_verified": 42,
"rows_sampled": 10000,
"checksum_valid": true
},
"signature": "ed25519:...",
"timestamp": "2024-01-15T10:30:00Z"
}What's next
Here is what we are working on. We announce no date, and none of it is sold in today's plans.
Standalone runner binary
Install the runner without a Docker image, on a plain Linux machine or as a systemd service.
Google Cloud Storage and Azure Blob
Read backups straight from GCS and Azure Blob Storage, the way the runner already reads S3, a local or NFS share and an HTTP URL.
Backups from the Windows world
Restore and verify a SQL Server backup, read network shares, and prove the freshness and completeness of the exports business applications produce.
Virtual machine and container backups
Prove a backed-up VM image is usable without booting it: full extraction, healthy filesystems, a coherent system, and the databases it holds brought up in a sandbox.
Frequently Asked Questions
Everything you need to know about RestoreProof
Ready to Verify Your Backups?
Create your account, deploy a runner, get your first signed report.
Start for free