AuditCoreAuditCore
53 scanners · 5 phases · 3 tiers

Every tool AuditCore runs, in one place

AuditCore orchestrates 53 open-source and custom security scanners across a 5-phase pipeline. Each scanner here has a dedicated page explaining what it tests, where it fits in the pipeline, and which tier includes it. No black boxes — click into any tool to see exactly what it does.

Phase 1/5

Reconnaissance

6 scanners

Discover the target attack surface — subdomains, live hosts, hidden directories, mail config — before any active probing.

Phase 2/5

Crawl

2 scanners

Authenticated browser walks the app through a recording proxy, capturing every HTTP request to feed downstream scanners.

Phase 3/5

Authentication Tests

7 scanners

Replay captured traffic across roles to find broken object-level / function-level authorization, and audit JWT, OAuth, session, cookie and SSL/TLS posture.

Phase 4/5

Injection & Active Tests

28 scanners

Active payload-based scanning — SQL, NoSQL, command, template, XXE, SSRF, prototype pollution, race conditions, AI prompt injection, business-logic abuse, plus full ZAP / Nuclei / sqlmap.

CORS Misconfiguration Checker

basic

wildcard+creds, reflected origin, null origin

Read more

SEO Auditor

basic

70+ checks, 20 pages (see SEO section below)

Read more

XXE Scanner

enterprise

XML entity injection, file read, SSRF via DTD

Read more

SSTI Scanner

enterprise

Jinja2/Twig/Freemarker/ERB template injection

Read more

Command Injection Scanner

enterprise

OS command injection (;id,

Read more

Path Traversal Scanner

enterprise

../../../etc/passwd, URL encoding, null byte

Read more

CRLF Injection Scanner

pro

header injection, response splitting

Read more

Host Header Injection Scanner

pro

Host/X-Forwarded-Host, password reset poisoning

Read more

Open Redirect Scanner

pro

redirect params, login/logout redirects

Read more

HTTP Method Override Scanner

pro

X-HTTP-Method-Override, _method body param

Read more

Sensitive Files Scanner

basic

.git, .env, swagger.json, backups, admin panels

Read more

NoSQL Injection Scanner

enterprise

MongoDB $gt/$ne/$regex, auth bypass

Read more

Business Logic Scanner

enterprise

price manipulation, quantity tamper, checkout skip, currency switch, status/role tamper, coupon abuse

Read more

AI Agent / Prompt Injection Scanner

enterprise

prompt injection (20+), jailbreak, encoding bypass, tool abuse, data exfil, RAG poisoning, agent loop/DoS, output control bypass, input filter bypass, token budget, webhook forgery, chatbot discovery

Read more

Smart API Fuzzer

enterprise

OpenAPI/Swagger discovery, schema-driven fuzzing, mass assignment, boundary values, type confusion, workflow skip, auth bypass

Read more

GraphQL Deep Scanner

enterprise

full introspection parsing, mutation fuzzing with injection payloads, mutation auth bypass, variable injection, query data exposure

Read more

AI Context Scanner

enterprise

Claude API: app analysis → targeted test plan, smart payload generation, finding triage (false positive detection), business logic risk identification. Max 5 API calls/scan

Read more

Nmap

basic

port scan + NSE vulns + version detection

Read more

OWASP ZAP

pro

spider + active scan via REST API

Read more

Nuclei

pro

8000+ templates, JSONL output

Read more

Nikto

pro

web server scan, JSON output

Read more

sqlmap

enterprise

--batch, --technique=BEU (safe)

Read more

SSRF Scanner

enterprise

URL params + common SSRF param names + cloud metadata

Read more

GraphQL Scanner

pro

introspection, depth, batch, field suggestions

Read more

HTTP Request Smuggling Scanner

enterprise

CL.TE, TE obfuscation

Read more

Prototype Pollution Scanner

enterprise

query + JSON + merge endpoints

Read more

Race Condition Tester

enterprise

20 concurrent requests

Read more

Prompt Injection Form Tester

pro

form injection + AI leak indicators

Read more
Phase 5/5

Static / Code & Mobile

10 scanners

Source-code, dependency and mobile-binary analysis — Semgrep rules, gitleaks secrets, Trivy CVEs, APK / IPA manifest, permissions, strings, network and native-binary hardening.

All 53 scanners. One scan. Per-domain license.

Pick a tier, scan once, get a unified report. Rescans are unlimited — no metered usage, no per-tool licensing, no separate dashboards.