Why an open source foundation beats the closed box

Pick almost any tool for auditing a website. Performance, accessibility, SEO, privacy. You'll find the same shape. A polished dashboard, a number that goes up or down, and a quiet assumption baked into the whole thing. Trust us. Trust that the score means what we say, that your data is safe, and that you'll get it out if you ever leave.

That's a lot of trust to hand a supplier you can't audit. This post is about a different starting point. One where the tool earns your trust because you can check it, keep your data, and walk away without losing anything.

What comparable tools usually ask of you

To be fair about the trade first, proprietary SaaS auditors, software as a service delivered from someone else's servers on a subscription, are genuinely convenient. Someone else runs the infrastructure, ships the updates, and keeps the lights on. For many teams that's the right call.

But convenience tends to arrive bundled with three quieter costs:

  1. A methodology you can't see. The score is calculated inside a closed system. You can't read the rules, so you can't tell whether a "78" reflects your site or the vendor's opinion about it.
  2. Data you don't fully hold. Your history lives in their database. You can view it, and maybe export a slice on request. But the full record isn't really in your hands.
  3. An exit that costs you. Leaving means starting over. The baselines and trend lines stay behind. That friction keeps subscriptions renewing, and it's no accident.

This is the default shape of vendor lock-in, where leaving a supplier is painful enough that you don't. SaaS isn't bad. You should simply know what you're trading, and be able to choose differently.

An open source engine you can actually read

Webperf Cloud is built the other way around. The engine that runs every evaluation, webperf_core, is open source. Its full source code is public for anyone to read, run, and change.

That single fact settles most of the questions above:

Data ownership as the default, not a feature

The open engine sets up the second half of the story. Your data is yours!

With Webperf Cloud, your test results and full history are yours to read and export through the API, the application programming interface, which is the structured doorway that lets your own systems pull data out directly. Every score and every finding, the whole record, as data you can move into your own warehouse, spreadsheet, or notebook.

Contrast that with the common pattern, where your history is effectively hostage to an active subscription. It's only visible while you pay, awkward to extract, and gone in practice the day you cancel. Ownership that lasts only as long as the invoice isn't really ownership. At Webperf Cloud it's the baseline. You can always get all of what we got, whenever you want!

At this point control stops being a convenience feature and becomes closer to digital sovereignty, the principle that an organisation should have meaningful say over its own data and the tools that touch it. (We wrote a whole piece on what digital sovereignty means.)

For teams under the EU's General Data Protection Regulation (GDPR), it's also practical. A tool whose methodology you can inspect and whose data you fully hold is one you can account for to a data-protection officer, rather than defend with the vendor says it's fine. You can point your own AI at that data too, but that's a separate story. The foundation is what matters here.

The control trade-off

The plain comparison looks like this. Closed SaaS auditors buy you convenience with a bit of your control:

An open foundation flips the default:

Both are legitimate choices. We just think that when the trade-off is laid out plainly, the open foundation wins. You deserve to make that call with your eyes open, not have it made for you inside a box you can't see into.


Want a tool that keeps you in control? See our plans or read about our approach.