Security

Conservative scanning by design.

The public scanner is intentionally narrow: one authorized hostname, public TLS on port 443 and bounded metadata collection.

Safe scope

Secret safety

The scanner does not request private keys, passwords, access tokens or credentials. It does not enable TLS key logging, capture application content or store packet traces.

Responsible use

Visitors must be authorized to assess the submitted target. Findings describe cryptographic metadata and migration relevance; Cipher Discovery is not performing exploitation or aggressive vulnerability scanning.

Reporting security issues

Please report a security concern to contact@cipherdiscovery.com with enough detail to reproduce the issue. Do not include live credentials or private key material.