How it works

From target URL to remediation report in a controlled scan flow.

TargetHunt resolves project scope, validates access, runs the scan pipeline, normalizes findings, and generates evidence-backed reports.

targethunt run --phases recon,dast,reporting

Step 1

Scope

Step 2

Validate

Step 3

Report

Live control surface
Resolve project
Dispatch bounded scan
Persist normalized evidence

1. Enter target

Start with a URL or domain.

The backend resolves the right workspace project or creates a scoped project when no existing project covers the typed domain.

  • URL validation
  • SSRF checks
  • Project matching

2. Run pipeline

Seven phases gather useful evidence.

Recon, JS analysis, DNS, API discovery, vulnerability testing, penetration validation, and reporting each emit structured telemetry.

  • Request estimates
  • Tool status
  • Phase telemetry

3. Review report

Findings are normalized for action.

Reports show standards mapping, impact, evidence, clean checks, limitations, and a safe score your team can discuss.

  • Findings table
  • Coverage notes
  • PDF report
Operator notes

A practical workflow for repeatable scans.

Every scan is designed to produce a useful decision package: what was checked, what was found, why it matters, and what to fix next.

Workspace membership check
Email verification gate
Quota and credit guardrails
Report fallback path

Run the workflow on your first domain.

Create an account and launch a scoped scan from the dashboard.

Start scan