
Shieldome
Intruder
IronWASP
Nessus
OWASP Penetration Testing Kit
Probe.ly
ScanRepeat
sploit.io
Detectify
Intruder
Pentest-Tools
Probe.ly
Acunetix
Nessus
Burp Suite
Snyk
Shieldome scans your websites for vulnerabilities (DAST) and monitors the dark web for leaked data and breaches - so you find weaknesses before attackers do.
What makes it different: pay-as-you-go tokens (1 token = 1 scan, no subscription lock-in), plus a SaaS plan for continuous monitoring. It's white-label ready, so agencies and hosting providers can resell it under their own brand, and everything is accessible via API.
Built solo. Enterprise-grade security, minus the enterprise price.
Shieldome
DetectifyNo Shieldome videos yet. You could help us improve this page by suggesting one.
Shieldome's answer
It started when I wanted to check my own websites for vulnerabilities and realized serious web security was either locked behind expensive enterprise tools or scattered across open-source tools that take real time to configure. I'm a solo founder and developer, so I built Shieldome end to end - the scanning engine, dark web monitoring, the platform, and all the go-to-market - to close that gap: something powerful enough to catch real issues, but simple and affordable enough that anyone can use it. The guiding idea is "find it before they do."
Shieldome's answer
Shieldome combines two things most tools keep separate: DAST-based web vulnerability scanning and dark web / breach monitoring, in one platform. It's built for people without a security team, with pricing that fits how you actually work - pay-as-you-go tokens for one-off scans (1 token = 1 scan), or a SaaS subscription for continuous, automated monitoring. Add a white-label option so agencies and hosts can resell it under their own brand, plus full REST API access, and you get enterprise-grade security without the enterprise price or complexity.
Shieldome's answer
Most competitors are priced and built for enterprises or security professionals, which leaves small businesses, agencies and hosting providers out. Shieldome is simpler to use, transparently priced, and flexible: buy tokens as you need them, or subscribe for continuous monitoring. The white-label and API options turn security into something agencies can offer their own clients as a revenue stream, not just an internal cost. And because it's a lean, one-person operation, it moves fast and stays close to user feedback.
Shieldome's answer
Small and medium businesses, web agencies, and hosting providers who need to secure websites but don't have a dedicated security team. Agencies and hosts in particular can use the white-label option to offer scanning and monitoring to their own clients. Developers and technical founders who want to automate scans via the API are a secondary audience.
Based on our record, Detectify seems to be more popular. It has been mentiond 4 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
Detectify once made an offer of making free scans which I took them up on. There are plenty of free Content Security Policy (CSP) and other vulnerability checkers around such as Observatory or Pentest. Shields UP!! Will identify which ports you have open. Source: almost 3 years ago
Detectify | Community Manager, Crowdsource | REMOTE (Offices in Boston, US & Stockholm, Sweden. We help with relocation if wanted) https://detectify.com/ We are a cyber security company in the industry, and more specifically the EASM (External Attack Surface Monitoring) space by automating and scaling the knowledge of hundreds of ethical hackers through our SaaS platform. Currently through our unique to Detectify... - Source: Hacker News / over 4 years ago
A concept-level idea would be this: 1) For your staging/UAT environment pipeline stages, add a "DAST scan" step, eg. With Detectify (which also has an API accommodating this need) 2) I'd assume, independently from the DAST scan, you ran some tests on UAT. Allow the scan to complete during the time it takes to run your UAT tests. After that, you'll get a report (automated or not) from your scanner. 3) When... Source: about 5 years ago
Subdomain takeover was pioneered by ethical hacker Frans Rosรฉn and popularized by Detectify in a seminal blogpost as early as 2014. However, it remains an underestimated (or outright overlooked) and widespread vulnerability. The rise of cloud solutions certainly hasn't helped curb the spread. - Source: dev.to / over 5 years ago
Intruder - Intruder is a security monitoring platform for internet-facing systems.
IronWASP - Learn, download and use the most flexible and powerful web application security testing framework.
Pentest-Tools - Pentest-Tools.com is your ready-to-use setup for security testing
Nessus - Nessus Professional is a security platform designed for businesses who want to protect the security of themselves, their clients, and their customers.
Probe.ly - Intuitive and easy-to-use webapp vulnerability scanner
OWASP Penetration Testing Kit - application security, owasp top 10, browser extension