Getting started
Your first scan
From signing up to a result you can act on, without connecting anything.
Before you start
You need an address you are responsible for. Nothing needs to be installed, no agent runs on your servers, and no DNS change is required for a standard scan.
Signing up is free and takes about a minute. The free plan covers one domain and one repository, scanned as often as you like.
Run it
Open Recon → Scan a website, paste the address, and start the scan. The page shows each check as it completes rather than a single spinner, so a scan that is slow because a certificate chain is slow looks different from one that is stuck.
A standard scan usually finishes in under two minutes. What takes the time is waiting on the target — DNS resolution, TLS negotiation, and rendering the page in a real browser.
Read the result
Findings are ordered by severity, and each one opens to show the evidence it was derived from: the header that was returned, the certificate that expires, the script that was loaded from somewhere else.
Start with anything marked high or critical that also carries high confidence. That combination is the shortest path to something worth fixing this afternoon.
Then prove the domain is yours
Verifying ownership unlocks the deep checks and lets you turn on monitoring. It is a single DNS TXT record, and it is the only setup step this platform asks for.