FAQ
Frequently asked questions
Short answers for operators evaluating an authorized external exposure report.
How large a network can I scan?
A public CIDR of /20 or more specific, or a delimited IPv4 list of at most 20 addresses. Private and other non-public addresses are not allowed. Combined host count cannot exceed 4,096. For lists larger than 20, email robert.lassiter@earnestware.com. See CIDR and scan size.
Can I scan hostnames?
Not from the website form. Enter IPv4 addresses or CIDR. That keeps validation strict before anything reaches nmap.
Is this a vulnerability scanner?
No. We do not run NSE vuln scripts, credential checks, or exploit modules. Open port plus service version is the deliverable.
Why only the top 1,000 ports?
Speed and signal. Most accidental exposures live in that set. A full port range is a different cost and duration profile and is not the website default.
How do I authorize a scan?
You attest that you own the network or have the owner’s permission. We store that statement, the exact targets, the time, and your IP. That is not a DNS or HTTP ownership check. See authorization.
Will you scan as soon as I click save?
No. Saving a schedule does not launch nmap. The dedicated scanner picks up due, attested schedules on the date you chose.
Do I need a credit card?
Not at this stage. Accounts are created with a free/complimentary plan flag. Stripe is not connected.
How do I contact you?
Use the contact form. Transactional mail (welcome and password reset) is not monitored for support threads. Delivery will use Resend once that provider is configured; until then messages are logged by the application mailer.
Can I have multiple logins on one company?
The schema supports multiple users per customer. The public signup creates one owner. Additional seats can be added later.