Features
What Nyxeara can do today, stated plainly. Capabilities still in progress are marked Coming soon — nothing is claimed before it works.
Available now
Attack Surface Discovery
Discover relevant application paths and surfaces.
Crawl and enumerate the routes, parameters, and resources an application actually exposes. Nyxeara builds a map of the surface an attacker would target, so you review what is reachable rather than guessing.
Dynamic Testing
Run security tests against authorized targets.
Dynamic tests are executed against running applications, exactly as an attacker would interact with them. Scope and authorization remain the operator's responsibility.
Technology Detection
Identify technologies exposed by the application.
Fingerprint frameworks, servers, CMSes, and libraries from live responses so you know the components behind the endpoints you review.
Endpoint Discovery
Build visibility into discovered routes and endpoints.
Assemble a structured endpoint inventory — method, path, status, parameters, source — to understand the reachable surface in one place.
Findings
Organize security findings by severity and context.
Findings are grouped by severity, target, and endpoint so triaging is driven by risk rather than volume.
Scan Management
Create and monitor scans.
Start scans against targets, follow progress, and review completed runs from a single scan registry.
Coming soon
Reserved areas of the platform. No release dates are promised until they are set.
API
Programmatic access to targets, scans, findings, and reports for automation. Coming soon.
CLI
A command-line interface for running scans locally and inside build pipelines. Coming soon.
Integrations
Webhooks, CI/CD integrations, Telegram notifications, and team accounts are future integration areas. Coming soon.
