Choose Your Scan Tier
From a quick surface check to a full attack-surface assessment. Every scan includes OWASP Top 10 mapping and a PDF report.
All scans use passive reconnaissance and safe active testing only. No destructive actions are performed on your website.
Features
Passive Recon
SSL/TLS certificate analysis
Security header checks
DNS record validation
Open port discovery
Technology fingerprinting
Threat intelligence lookups
Vulnerability Intelligence
CVE database matching
CISA KEV cross-check
Exploit-probability weighting (EPSS)
False positive reduction
Active Scanning
Active vulnerability scanning
5,000+ templates
5,000+ templates
Targeted subdomain scanning
Top 5 reachable
Attack Surface
Subdomain discovery
Unlimited
Origin exposure / WAF bypass
Verified
Subdomain takeover detection
Decommissioned subdomain detection
WAF/CDN identification
24+ products
Email & Data Exposure
Email authentication (SPF, DKIM, DMARC)
DNSSEC validation
Exposed cloud storage buckets
Credentials leaked in client-side code
Reporting
OWASP Top 10:2025 mapping
NIST CSF 2.0 mapping
PDF report via email
Remediation guidance
Basic
Detailed
Detailed
Attack Surface Overview
Partial
Full