FREE & OPEN SOURCE · MACOS NATIVE

A dozen recon tools.
One scan. One report.

Checking a domain means hopping between dig, whois, openssl, nmap, crt.sh and a stack of browser tabs — then copy-pasting it all into a doc. ReconKit runs every check at once and compiles a single ranked report you can export to PDF. Minutes of busywork, gone.

Download for macOS View Source
Notarized by Apple No tracking No account 2.2 MB
reconkit — scan
Why ReconKit

One scan instead of an afternoon

The same checks a reviewer runs by hand — gathered, ranked, and exported in one pass.

The old way

dig / nslookup DNS
crt.sh subdomains
openssl s_client TLS cert
curl -I / securityheaders HTTP headers
nmap ports
whois registration
HIBP · URLhaus · VirusTotal reputation
…then copy-paste it all into a doc by hand.

With ReconKit

1 Type a domain
2 One scan runs every check in parallel
3 Read one ranked report
✓ Export to PDF — done in seconds.
Capabilities

Everything you need to know

Full surface-level reconnaissance of any domain, from a native macOS app.

DNS Records

A, AAAA, MX, NS, TXT, SOA, plus SPF, DMARC, DNSSEC and CAA hygiene in one pass.

Subdomains

Discovered from Certificate Transparency logs (crt.sh), then resolved to find live hosts.

SSL Certificates

Certificate details, expiry, issuer chain, and certificate-transparency log entries.

HTTP Headers

Security headers, server fingerprint, redirects, and full response analysis.

Port Scanning

TCP handshake against 15 common ports, with banner grabs on plaintext services.

WHOIS

Registrar, creation and expiry dates, and domain status via the authoritative registry.

Reputation

Have I Been Pwned and URLhaus for free; add your own VirusTotal key for 90+ vendors.

Monitor & Diff

Re-scan over time, compare snapshots, and export the whole report as PDF.

8
Scan modules
0
Data collected
100%
Local execution
$0
Forever free
Workflow

Three steps. Seconds.

No flags, no man pages, no copy-pasting between tools.

1

Enter domain

Type any domain or hostname into the bar.

2

Click Scan

ReconKit fans out every probe in parallel.

3

Read report

Structured findings in seconds. Export to PDF.

Open Source

Built in the open

Free and open source. No accounts, no tracking, no telemetry. Every probe runs locally on your Mac — read the code yourself.

Star on GitHub
Swift native App Sandbox MIT licensed No dependencies
From the makers of ReconKit

ReconKit shows what's visible.
The report tells you what to fix first.

No fearmongering. No 40-page PDF. A short, ranked report your web person or IT can act on the same day — industry-standard scanners, read by a human.

$49 one-time report $29/mo monitoring

The report is the proof.