Professional-grade security scanning tools powered by open-source engines. Free for basic scans — no signup required.
Nmap-powered. Discover open ports, running services, and versions.
Scan now →DNS enumeration + certificate transparency logs + HTTP probing.
Scan now →Find the hostnames served by an IP — live, via reverse DNS and TLS certificates.
Look up →Is a site malware or phishing? Checked against URLhaus, OpenPhish & DNS blocklists — no API keys.
Check now →OWASP Top 10 — SQLi, XSS, SSRF, CVEs with EPSS scoring.
Scan now →Certificate validation, TLS versions, cipher suites, Heartbleed & POODLE detection.
Check now →All DNS records, SPF, DMARC, DNSSEC validation, zone transfer testing.
Lookup now →9 security headers graded. CSP, HSTS, X-Frame-Options, Referrer-Policy.
Check now →WhatWeb fingerprinting — CMS, servers, languages, JS libraries, CDN.
Detect now →WordPress, Joomla, Drupal vulnerability scanner. Plugins, themes, misconfigs.
Scan now →Prefer working in chat? The same checks are available as free GPT assistants built by Secably — ask in plain English, get records, verdicts and fixes explained.
Check any link for phishing and malware in chat.
Open in ChatGPT →Certificate validity, expiry and TLS issues explained.
Open in ChatGPT →Read and explain any domain's DNS records.
Open in ChatGPT →See what else is hosted on an IP address.
Open in ChatGPT →Map a domain's subdomains conversationally.
Open in ChatGPT →Which ports are exposed and what each one means.
Open in ChatGPT →Identify WordPress, Joomla, Drupal and more.
Open in ChatGPT →Full technology stack of any website.
Open in ChatGPT →Guided OWASP-style security review in chat.
Open in ChatGPT →Audit CSP, HSTS and the rest of your headers.
Open in ChatGPT →Registrar, expiry and ownership of any domain.
Open in ChatGPT →ISP, ASN and location behind any IP.
Open in ChatGPT →Severity, exploitation and fixes for any CVE.
Open in ChatGPT →