Attack surface intelligence, graded

See Everything You Expose.
Fix What Matters First.

Map your whole external attack surface, then drill into the exact CVEs on each host. Six scan types, one clear grade, and an AI assistant that explains every finding in plain language.

No credit card · Sign in with Google or GitHub · Full access from day one

6
Scan Types
A+ to F
Graded Results
100+
Security Checks
1
Overall Score

The AYAsec Workflow

From "what do we even have exposed?" to a fix in 3 moves

Most scanners make you already know what to point them at. AYAsec starts a step earlier - it finds the hosts, then tells you what's wrong with each one.

01Discovery scan
Map your attack surface
Run Discovery on a domain. AYAsec enumerates subdomains and related domains, probes each for liveness, fingerprints the tech stack, and flags subdomain-takeover risk on abandoned DNS records.
02Target Groups
Group the hosts that matter
Select the live hosts you care about and add them to a Target Group in one click. Now they are managed, scanned and tracked together instead of one domain at a time.
03HTTP scan + CVE lookup
Drill into per-host CVEs
Batch-scan the whole group. Each host's report shows its detected technology stack, lets you correct a version if auto-detection missed one, and returns the exact CVE matches for what's actually running.

Every step above is a real, one-click action inside AYAsec - no scripts, no CSV wrangling, no stitching tools together.

Try the workflow free

What We Scan

Six ways to see your external risk

From the hosts you didn't know you had to the cipher suites on the ones you do - AYAsec covers every layer of your public footprint.

Attack Surface Discovery
Enumerate subdomains and related domains, fingerprint each host's tech stack, and catch subdomain-takeover risk before someone claims your dangling DNS record.
TLS / SSL Analysis
Protocol support, cipher suites, certificate validity, chain of trust, CAA records, and known weaknesses like BEAST, POODLE and Heartbleed - graded end to end.
HTTP Security Scanning
Full ZAP-powered scanning - AJAX-spider crawling of JS-heavy pages, active vulnerability testing at configurable depth, security header checks, and technology fingerprinting cross-matched against known CVEs.
Port Scanning
Find open ports and exposed services reachable from the internet. Surface risky services and misconfigurations before an attacker maps them first.
DNS Security
Validate SPF, DMARC, DNSSEC and MTA-STS records, plus zone-transfer and DNS takeover exposure. Spot e-mail-spoofing exposure and DNS misconfigurations at a glance.
Domain Credibility
Check your domains and IPs against DNSBL blocklists, AbuseIPDB reputation data, threat intelligence feeds (Google Web Risk, AlienVault OTX), and domain-age signals to catch reputation problems early.

Scoring System

One grade you can actually act on

Each scan earns its own A+ to F letter grade. Run them together and AYAsec blends them into a single Overall grade for the domain, so you always know exactly where a target stands and whether it's getting better or worse.

A+98–100
A90–97
B70–89
C60–69
D50–59
E35–49
F0–34

Meet AYA

An AI analyst that reads the report with you

AYA is a Claude-powered assistant built into every report. It already knows the grades, findings and CVEs on the screen you're looking at - so you can ask about a result in plain language and get an answer grounded in your actual scan, not a generic explainer.

  • Ask what a finding means and why it matters
  • Get remediation guidance tied to your real results
  • Understand which CVEs on a host deserve attention first
Why does this host have a D grade?
AYA
It's dragged down by TLS 1.0 still being enabled and a missing HSTS header. The TLS finding weighs heaviest here - disabling the legacy protocol alone would move this target up a grade.

Illustrative. AYA answers from the report you're viewing.

Stay Ahead of Drift

Scan once. Get told when it changes.

Security posture erodes quietly - an expiring certificate, a re-enabled weak protocol, a header that got dropped in a deploy. Put your targets on a schedule and let AYAsec watch for you.

Scheduled re-scans
Set targets to re-scan automatically on a schedule you control. No reminders, no forgotten domains.
Grade-drop alerts
The moment a target's grade regresses between scans, AYAsec flags it - so a quiet change doesn't become a silent gap.
Certificate expiry warnings
Get a heads-up before a TLS certificate expires - not an outage report after it already has.
PDF export
Turn any report into a clean PDF for auditors, clients or a ticket - one click, no copy-paste.

Built For Teams

Scale past a single target

Manage every domain across your organization with the access controls security and IT teams actually expect.

Workspaces
Separate targets, scans and alerts by team or business unit, each with its own scoped dashboard.
Target Groups
Bundle related domains, scan or verify them in bulk, and read a worst-of rollup grade for the whole group.
SSO & Access Control
SAML single sign-on, role-based permissions, IP allowlisting and session management to govern who can see and do what.
Audit Log
A full history of who scanned what and when - ready for compliance reviews and internal accountability.

Find out what you're exposing today

Create a free account, point AYAsec at a domain, and get your first graded report in minutes. No credit card. Full access to every scan type.

A+ - ayasec.ai's own AYAsec score