The investigation loop

Connect your app.
Follow the evidence.

No prompts or vulnerability menus. HackInspect selects applicable checks from the access and evidence available.

01 / Connect

Create a project, enter a publicly reachable test URL, optionally connect source, and add dedicated test identities.

02 / Authorize

Attest that you have permission, then publish a challenge file. Only the verified origin is in scope.

03 / Investigate

An isolated browser explores read-only workflows. Persisted events show what was actually reached, tested, or blocked.

04 / Verify

Review redacted evidence and mitigation guidance. Rerun saved regression requests after repair, including legitimate access controls.

Cloud workers cannot reach localhost or private networks. Start with a public development, staging, lab, or test application. No desktop application, extension, CLI, or local agent is required.