Documentation
Know your surface. Act sooner.
A practical guide to adding targets, reading findings, and getting the most from Rimscan monitoring.
1. Getting Started
Create an account, then add your first domain from the dashboard. You must own the domain or be authorized to scan it. Once the target is added, start your first scan from the dashboard. When it completes, the results appear in Findings.
2. Understanding Your Findings
A finding is a security issue or exposure Rimscan detected on an authorized target. Severity ranges from critical and high to medium and low, helping you prioritize response. A CVE ID, when present, identifies a publicly catalogued vulnerability. From the Findings page, triage each item by marking it Resolved or False Positive.
3. Standard Scan vs. Deep Scan
A standard scan passively maps your attack surface, including subdomains, DNS, certificates, and exposure patterns. A Deep Scan performs active testing with crawling and payload-based checks such as SQL injection and XSS for deeper coverage. Deep Scan requires explicit authorization confirmation for each scan and is available on the Pro plan.
4. Continuous Monitoring
Pro targets are automatically re-scanned approximately every 2 days, so new exposures can be caught without manual action. Free plan scans are manual-only.
5. Plans & Quotas
Free includes 1 domain and 5 scans every 14 days, with standard scans only and no continuous monitoring. Pro includes unlimited domains and scans, continuous monitoring, and Deep Scan every 4 hours with cooldown. See the pricing page for the full comparison.
7. API Reference
Public API access is planned for a future release. If you're interested in programmatic access, contact support@rimscan.cloud.