Documentation

Everything in SecNxt, explained

Detailed guides for every feature — what it is, why it matters, how it works and how to use it step by step. Whether you're evaluating SecNxt or just getting started, start here.

Platform & scanning

The security engines — code, dependencies, web, API, mobile and cloud — plus findings and AI prioritisation.

Security dashboard

Your security command centre — posture, trends and what needs attention now.

Read guide

Running a scan

Point SecNxt at a target and get prioritised findings in minutes.

Read guide

Source code scanning (SAST)

Find vulnerabilities in your own code before it ships.

Read guide

Dependency scanning (SCA)

Detect known-vulnerable open-source packages in your dependencies.

Read guide

Website / web app scanning (DAST)

Test a running web application the way an attacker would.

Read guide

API endpoint scanning

Test REST and GraphQL APIs for auth, injection and data-exposure flaws.

Read guide

Mobile app scanning

Analyse mobile app builds for insecure storage, secrets and weak crypto.

Read guide

Container & cloud posture (CSPM / KSPM)

Find misconfigurations in cloud accounts, containers and Kubernetes.

Read guide

Secrets scanning

Find passwords, API keys and tokens accidentally committed to code.

Read guide

Infrastructure as Code (IaC) scanning

Catch insecure cloud configuration in Terraform, Kubernetes, CloudFormation and Dockerfiles.

Read guide

Network scanning

Probe hosts and IP ranges for exposed services, weak TLS and missing security headers.

Read guide

VAPT — Vulnerability Assessment & Penetration Testing

Audit-grade, human-verified penetration testing with defensible reporting.

Read guide

Vulnerabilities & findings

One prioritised inbox for every issue across every scan.

Read guide

AI Threat Predictor / Smart Ranking

Let AI tell you what to fix first based on real-world exploitability.

Read guide

Self-hosted runner

Scan private and internal targets without exposing them publicly.

Read guide

Organisation & teams

Organisations, workspaces, assets, roles, invitations and activity — how SecNxt keeps work organised and isolated.