Continuous external vulnerability scanning
Continuous vulnerability scanning without the enterprise complexity
Verify a domain, uncover internet-facing risk, and give your team a clear remediation plan. Start with one verified target.
No credit card required · Ownership verification before scanning
Good morning, Maya.
Security grade
Monitored assets
Open findings
Last completed
Fix these first
Prioritized by catalog severity and verified exposure
TLS certificate validation failed
app.northstar.dev · HTTPS
TLS certificate expires soon
api.northstar.dev · HTTPS
Missing security headers
docs.northstar.dev · HTTPS
Scan health
Last 7 days
How it works
From verified target to verified fix
- 01
Verify scope
Prove control of a domain and explicitly authorize each target before scanning begins.
- 02
Monitor continuously
Schedule bounded, non-destructive checks against the public assets you approved.
- 03
Fix and prove
Assign findings, verify remediation with a rescan, and share current evidence.
See your external exposure in one place
Monitor verified domains, DNS policy, TLS certificates, HTTPS redirects, and HTTP security headers from one operational view.
Explicit severity
Every retained finding has a visible priority.
Verified scope
Results stay tied to the target you authorized.
Current status
Rescans keep remediation evidence up to date.
Verified assets
Verified targets, approved checks, and current findings.
Verified assets
Checks per scan
TLS targets
app.northstar.dev
Web application · DNS · HTTPS
3 findings
Needs attention
api.northstar.dev
Public API · DNS · HTTPS
2 findings
Monitoring
docs.northstar.dev
Documentation · DNS · HTTPS
1 findings
Monitoring
status.northstar.dev
Status page · DNS · HTTPS
1 findings
Verified
Fast activation
Verify a domain and launch a safe baseline scan without installing an agent.
Actionable priority
Combine catalog severity, verified scope, check outcome, and remediation context.
Continuous coverage
Schedule recurring scans and receive alerts when your exposure changes.
Verified remediation
Rescan on demand and preserve evidence that a finding was fixed.
From exposed asset to verified fix
A focused workflow for reviewing trusted findings, assigning remediation, verifying the fix, and preserving evidence.
Finding ownership
Assign issues, set due dates, and keep remediation context with the finding.
TLS certificate validation failed
app.northstar.dev:443
Authorized asset inventory
Keep verified domains, DNS policy, certificates, and approved HTTPS check state in one shared inventory.
Catalog-owned prioritization
Rank bounded configuration findings using server-owned severity and the verified target context.
Focused alerts
Send scan-completion and critical-finding email through the configured notification boundary.
Security email
VulnerabilityScan · now
Critical TLS finding detected
Certificate validation failed on app.northstar.dev
Review findingContinuous monitoring
Schedule safe recurring checks and rescan on demand when a fix ships.
Weekly baseline
ActiveMake the next security decision obvious
Keep findings, owners, due dates, evidence, and verification history together. Turn scanning into measurable progress.
TLS certificate validation failed
app.northstar.dev:443 · First observed 18m ago
Observed evidence
tls.certificateresource app.northstar.dev
observed: certificate validation failed
expected: trusted certificate for hostname
Bounded result · no response body stored
Priority signals
Check
TLS certificate
Severity
Critical
Protocol
TLS
Port
443
Verification rescan ready
Run after the fix is deployed
Evidence stays attached
See the affected asset, approved check, bounded evidence, and risk signals.
Owners stay accountable
Assign findings to the people who can fix them and track status over time.
Reports stay current
Generate executive and technical evidence from the latest verified scan state.
Fixes stay verified
Run a remediation rescan and preserve proof that the exposure is gone.
Core controls to keep exposure work moving
Move from safe scanning to prioritized remediation and current evidence in one focused workflow.
Continuous coverage
Schedule recurring external checks across the assets your team verifies.
Fast triage
Filter by severity, asset, check family, owner, and remediation state.
TLS certificate validation failed
app.northstar.dev:443
Predictable pricing
Pay for monitored assets you explicitly add, with no discovery-based surprise charges.
Monitored assets
12 of 25
Discovery never creates surprise charges.
Security-first controls
Ownership verification, scoped policies, audit trails, and tenant-aware controls are built into the workflow.
Exposure insights
Track asset coverage, open findings, remediation progress, and risk trends at a glance.
Open risk
7
Safe scan engine
Rate-limited, non-destructive templates run only against explicitly verified targets.
Your first scan is one verified domain away
Three assets free for 14 days. No card required.
Start free