$
pentest_scanner
Passive + light active security checks on a URL you control.
⚠ Only scan systems you own or have written permission to test. Unauthorized scanning may be illegal.
Target URL
Modules
HTTP security headers
TLS / certificate
Tech fingerprint & info disclosure
Unprotected admin/dev paths
Active probes (XSS / SQLi / redirect / CORS)
JS endpoints & secret leaks
Run scan