01
Verify your app
Prove you own the domain, pick the path to test and paste your deploy webhook. Mystra never runs against an app you haven't verified.

After every deploy, Mystra signs up to your app in a real browser, pays and checks that access unlocked. When something breaks, you get proof, not a guess.
1,204 checkouts tested in the last 24 hours

How it works
Mystra doesn't ping your homepage. It walks the path a paying customer takes, in a real browser with its own inbox, and only alerts you when it can prove something broke.
01
Prove you own the domain, pick the path to test and paste your deploy webhook. Mystra never runs against an app you haven't verified.
02
On every deploy or on a schedule, the runner creates a fresh account, waits for the welcome email in its own inbox, pays, and checks the plan actually unlocked.
POST /api/checkout returned 500 after deploy a41f9c2. Screenshot, HAR file and the email trail are attached.
03
Broken means evidence: a 5xx, a timeout, an email that never came, access that stayed locked. Flaky or uncertain steps show in the report but never wake you up.
Why Mystra
Uptime checks tell you the homepage loaded. Mystra tells you whether a customer could sign up and pay, and shows you the evidence when they couldn't.
Each step is recorded with a screenshot, the network trace and the emails Mystra received, so the report shows what a customer saw, not a summary of it.
POST /api/webhooks/deploy/8f2c…or every hour, your choice
A webhook from your pipeline starts a run the moment you ship, so a broken checkout is caught minutes after the commit, not days.
Magic link found and opened. Confirm your email →
Mystra receives the emails your app sends, follows magic links and confirmations, and flags the ones that never arrive.
A step that fails once and passes on retry is marked flaky, not broken. Both attempts are kept, and you're only paged when it fails twice.
TXT _mystra.app.example.commystra-verify=c9e1…f04aVerified via DNSNo run starts until you've proven the domain is yours. There's no override, which is what keeps Mystra a monitor and not an abuse tool.
Pricing
Every plan includes screenshots and traces on every run, alerts only with proof, and as many teammates as you like.
One app, checked after every deploy.
1 app · 300 runs / month
Several apps or environments, on a schedule and on deploy.
3 apps · 2,000 runs / month
For teams shipping many apps who need the full trail.
10 apps · unlimited runs
Prices in USD. Start free, no card required; upgrade when the first run finds something.
FAQ
Short answers to the things that matter when a tool gets to touch your checkout.
It creates one account per run and only follows the steps you configured. It never deletes anything, never creates records in bulk, and never calls an endpoint outside the path you set up. Screenshots can contain customer data, so they live in a private bucket and are served through short-lived links scoped to your account.
Get started
Verify your domain, paste the deploy webhook, and the first run is on its way. If it finds something, you'll get proof; if it doesn't, you'll sleep better.
No card required · first run in under 5 minutes