root@webironshield:~$ ./scan --target yoursite.com
Website Vulnerability Scanner
Web Iron Shield scans a website you own for the exact weaknesses attackers hunt for, then hands you a plain-English report on how to fix each one.
Web Iron Shield is a downloadable desktop security scanner that checks a website you own for vulnerabilities — SQL injection, XSS, exposed .env/.git files, leaked API keys, missing security headers, outdated software and known CVEs — and produces a prioritized, fix-it report. Free tier available; Pro is a one-time $49.99.
Why it matters
Stolen credentials, an exposed config file, one unescaped input field — the entry points behind the headlines are the ordinary web vulnerabilities a scan catches. Web Iron Shield finds them on your own site while they're still yours to fix.
Features
Tests for the ten vulnerability classes behind most real-world attacks, from injection to broken access control.
Safely fires real payloads for SQLi, XSS, SSRF, command injection, path traversal, SSTI, XXE, JWT and IDOR flaws — on sites you own.
Flags exposed .env/.git, backups and leaked API keys — AWS, Google, Stripe, OpenAI & more.
Optional AI review explains each finding in plain English and helps rank what to fix first.
Detects outdated CMS, plugins and frameworks tied to 21+ known CVEs before attackers weaponize them.
Export a prioritized report to HTML, JSON or CSV — each issue paired with a concrete remediation step.
How it works
Grab the Windows app and confirm you own — or have permission to test — the target site.
Enter your URL and watch the live scan crawl pages and run every check in real time.
Review findings by severity, then export a report with a fix for each one.
What it detects
A colour-coded stripe marks the typical severity of each class in a real report.
The report
Pricing
No subscription, no per-scan fees. One license, unlimited scans of the sites you own.
FAQ
Get started
Download the free version and run your first scan in minutes — or unlock everything with a one-time $49.99 Pro license.