Skip to content
Product, ScanForge

Find the bugs before they do

A desktop web-application security scanner: 42 detectors, Scope and Intruder, the Scout interactive browser, AI-assisted triage, live finding verification, scan-over-scan diffing, scheduled scans, CI integration and six report formats. It runs entirely on your machine and your scan data never leaves it.

What you get

Everything unlocked, offline

No per-scan metering, no cloud dependency, and no scan data leaving your machine. The licence is the only thing that talks to a server.

01

42 detectors

OWASP Top 10 plus auth abuse, JWT tampering, IDOR walks, mass assignment, SSRF, SSTI and more, all running in parallel.

02

Scope and Intruder

An allow-list gates every scan and attack, and Intruder fires Sniper, Battering Ram, Pitchfork or Cluster Bomb payloads with processing rules.

03

Scout

Drive a real browser from inside the app: navigate, click, type and scroll through logins and JavaScript apps while every request the page makes is captured. Hand any one straight to Intruder, ready to fuzz.

04

AI triage

Bring any OpenAI-compatible provider, cloud or fully local, and get plain-English explanations, exploitability analysis and remediation guidance per finding. Analyses are stored: generate once, read forever.

05

Sees the real app

A real browser crawls your single-page app, captures screenshot evidence, and can log in like a user: capture the session once, then scan behind authentication.

06

Verify, diff and trend

Re-confirm any finding live with a real request, diff any two scans for regressions, and watch posture improve scan over scan. Findings carry a confidence score, status, an owner and notes.

07

Built for pipelines

Scheduled re-scans, scoped API tokens, baselines and severity-gated exit codes for CI, plus HTML, JSON, SARIF, Markdown, CSV and JSONL reports.

08

Fully offline

Bundled engine, embedded database, offline licensing. Your scan data never leaves your machine, and you can purge a target on demand.

09

Self-managing

Memory guards, retention policies and every engine setting controlled from the app. Scans checkpoint as they run, so an unexpected exit never loses findings.

Pricing

One licence, device bound

Billing period

All prices in Nigerian naira. Charged through Paystack.

Free Trial

014 days

Full Pro capabilities for two weeks. No payment required.

  • All 42 detectors
  • All scan profiles
  • Scout and AI triage
  • Intruder and reports
  • 1 seat

Pro

720,000per year

For the individual pentester. One seat, everything unlocked.

  • All 42 detectors, all scan profiles
  • Unlimited scans and Intruder
  • Scout interactive browser
  • AI triage with your own provider
  • Verify, diff and finding triage
  • Authenticated scans via browser login
  • 3 scheduled scans, 2 API tokens
  • All 6 report formats
  • 1 seat, email support
Most popular

Team

2,864,000per year

For small security teams, with five device-bound seats.

  • Everything in Pro
  • Up to 5 device-bound seats
  • Priority email support

Enterprise

9,584,000per year

For larger teams: volume seats, procurement and onboarding.

  • Everything in Team
  • Unlimited scheduled scans and API tokens
  • 25 seats
  • Invoicing and purchase orders
  • Onboarding and an SLA
Get your license key

A key in seconds.

Get a key here, then in ScanForge open the license badge, choose Activate, and paste it. The free trial unlocks full Pro features for 14 days.

A licence is bound to the devices it is activated on, so it is yours rather than shareable. You can release a seat from the app when you move to a new machine.

Your key is emailed here as well as shown on screen.

Start here

Questions before you buy?

Tell us what you are scanning and we will tell you honestly whether ScanForge is the right tool for it. Email admin@yeantech.com.