Skip to Content
Internal ScanningOverview

Internal Scanning

Scan web applications inside your private network with the same DAST capabilities as external scanning — powered by 1,765+ modules from Detectify’s internal research team, ~400 Crowdsource ethical hackers, and Alfred AI. The Internal Scanning Agent deploys in your infrastructure and identifies vulnerabilities in applications that aren’t exposed to the public internet.

Detectify product name: Internal Scanning

What You Can Scan

  • Internal APIs and microservices
  • Admin panels and back-office applications
  • Staging and pre-production environments
  • Applications behind firewalls or VPNs
  • On-premises legacy applications

How It Works

Internal Scanning Overview - Scanner deployed in your private network connects outbound to Detectify Platform
Click to enlarge
  1. Deploy the agent in your private network (AWS, Azure, GCP, or on-premises)
  2. Configure scan targets in the Detectify platform
  3. Scan - the agent scans your internal applications from within your network
  4. Review results in the Detectify dashboard alongside external scan findings

Choose Your Path

I’m evaluating this solution

For Security Leaders & AppSec Engineers

Understand what Internal Scanning does, how it fits into your security program, and what the security implications are.

  1. Use Cases - When to use internal scanning
  2. Security & Privacy - Data handling and compliance

I’m ready to deploy

For DevOps & Platform Engineers

Get the scanner running in your environment with step-by-step deployment guides.

  1. Requirements - What you need
  2. Deploy on AWS - Terraform guide
  3. Configure - Connect to Detectify

Key Benefits

BenefitDescription
Same scanning engineIdentical DAST capabilities as external scanning, including crowdsourced security research
Data stays privateYour application data never leaves your network - only scan metadata and results are sent to Detectify
No inbound accessAll communication is outbound-only over TLS 1.3. No firewall holes required
Unified visibilitySee internal and external scan results in one dashboard

Deployment Options

PlatformMethod
AWS (EKS)Terraform
Azure (AKS)Terraform
Google Cloud (GKE)Terraform
Self-Managed / On-PremisesHelm Chart

Getting Started

Operations

Integrations

Last updated on