Attack-Surface / Exposed-Path Scanner
Live Recon · Zero MLReal passive checks — exposed paths, directory listing, CMS fingerprint, open ports
Type a domain. Four passive checks run live: exposed sensitive paths (.git/.env/etc.), directory listing, passive CMS fingerprinting, and a short common-port connectivity check. No exploitation — just GET/HEAD requests and plain TCP connects. Private/internal addresses are refused.