Activity: scans and domains
Start a scan from Activity › Scans: add it, verify a domain, run it, repeat it on a schedule, watch it live and review what it found.
- Who can do this: Contributor · Admin
- In the app: Activity › Scans
- 10 min
Activity is where you run scans and see what they did. What a scan finds is worked in Assets and Exposure; your to-do list is in Actions.
Add a scan
| Scan type | What it does |
|---|---|
| Attack Surface | Tick Configuration reviews to also run the reviews below over what it finds. |
| Dark Web Discovery | Looks for leaked credentials tied to your domains, in breach data and on the dark web. Read its outcome in Identity exposures. |
| TLS & cipher configuration | Reviews which TLS versions and cipher suites a service accepts, and its certificate. |
| HTTP security headers | Checks which security headers your web services send back. |
- Open Activity › Scans and select New Scan.
- Enter a Scan Name, then choose a Scan Type and a Run Mode: On Demand or Scheduled. To switch run mode later, delete the scan and create it again.
- For an Attack Surface scan, Scan Preset Type sets how far it goes: Passive Scanning (reconnaissance without direct interaction with the target), Active Scanning (interacts with target services and ports), Deep Scanning (the most thorough) or Custom Configuration (settings you supply). A preset outside your plan shows a lock.
- Add one or more targets. Dark Web Discovery takes Monitored Domains.
- Tick the box confirming your organisation is authorised to scan the targets, then select Create Scan.
How authorisation works is in Run your first scan.
Prove you control a target
If a scan asks you to verify a domain, you are offered Go to Domains.
- Open Activity › Domains and select Add Domain.
- Enter the domains, hosts or public IP addresses your organisation controls, then select Add.
- Prove each one by publishing what the dialog shows: a TXT record at your DNS provider, or a file on the host if you do not control DNS. Then select Verify; Show record reopens the instructions. Leave the record or file in place.
To remove a domain, select the bin icon on its row. The number of domains you can add depends on your plan; see pricing.
Run a scan
Open the scan's row menu in Activity › Scans, choose Trigger Scan, then Yes, Trigger. Each run is listed in Activity › Scan Activity.
Repeat a scan on a schedule
- Select New Scan and set Run Mode to Scheduled.
- In Schedule, choose Daily, Weekly or Monthly; the platform picks the run time. Custom (advanced) takes a cron expression instead.
- Complete the scan and select Create Scan. The scan shows Active in Status. To see when it runs next, turn on the Next Run column from the table's View control.
Paid plans include scheduled scans, and the frequencies available depend on the plan; see pricing.
| To | Row menu |
|---|---|
| Pause a scheduled scan, or carry on | Pause scan, Resume scan |
| Change the name, targets or schedule | Edit, then Save Changes |
| Remove the scan | Delete |
Watch a scan live
Open Activity › Live Scan to follow a running on-demand scan. Paid plans include a discovery graph; see pricing.
Review the results
Activity › Scan Activity lists each run. A scan's row menu has View Result for its own runs.