Safe scanning starts with verified scope
VulnerabilityScan verifies ownership, blocks unsafe targets, and keeps every finding tied to clear evidence.
Start freeView sample reportIncluded free during your trial.
Clear workflow for your first verified domain.
Built around transparent, approved security checks
Every finding maps to a bounded check and visible evidence.
Safe by scope. Transparent by design.
Authorization, target boundaries, and scan policy stay visible from setup through remediation.
Verified target
app.northstar.dev
Recorded authorization
Verify control of every target and preserve the requester, scope, and consent in an audit trail.
Bounded scan policy
Keep scans predictable with approved checks, request ceilings, schedules, and emergency stops.
Controls that begin before the first scan
A conservative external scan policy protects your organization, your customers, and the wider internet.
- Verified ownership
- Require DNS, hosted-file, or reviewed proof of control before an active scan begins.
- Unsafe target blocking
- Reject private, loopback, link-local, metadata, multicast, and rebound addresses.
- Rate-limited jobs
- Enforce request ceilings, concurrency limits, and emergency stops centrally.
- Explainable evidence
- Keep observed behavior and contributing priority signals attached to each finding.
- Audit history
- Record scope, policy, requester, consent, and status changes for every scan.
- Tenant isolation
- Separate customer data with least privilege, encryption, and explicit retention controls.
Core controls to keep exposure work moving
Move from safe scanning to prioritized remediation and current evidence in one focused workflow.
Continuous coverage
Schedule recurring external checks across the assets your team verifies.
Fast triage
Filter by severity, asset, check family, owner, and remediation state.
TLS certificate validation failed
app.northstar.dev:443
Predictable pricing
Pay for monitored assets you explicitly add, with no discovery-based surprise charges.
Monitored assets
12 of 25
Discovery never creates surprise charges.
Security-first controls
Ownership verification, scoped policies, audit trails, and tenant-aware controls are built into the workflow.
Exposure insights
Track asset coverage, open findings, remediation progress, and risk trends at a glance.
Open risk
7
Safe scan engine
Rate-limited, non-destructive templates run only against explicitly verified targets.
Frequently Asked Questions
Clear answers about assets, safe scanning, reports, and billing.
General
Scanning and reports
Can't find what you're looking for? Contact our customer support team
Your first scan is one verified domain away
Three assets free for 14 days. No card required.
Start free