Category 01 · External Attack Surface Q1 2027
Port & Service Scanner exposure
What's listening that shouldn't be.
External port + service scanning, scheduled and on-demand. We catch the RDP that opened "just for the weekend", the test database left listening on 5432, the admin panel forgotten on a non-standard port. Banner grabs feed CVE enrichment so high-severity exposures jump to the top of your queue.
Shipping Q1 2027
What we're building.
Wide Watch ships on a published roadmap. Below is the scope we're committing to for Port & Service Scanner; if you want input on priorities, join the waitlist and reply with your wishlist — we read every reply.
- TCP top-1000 + opt-in full-range scans.
- Service fingerprinting + banner grab.
- CVE enrichment per fingerprint via NVD + GitHub Security Advisories.
- Diffing — alert only when something changes, not on every scan.
- Allowlist common services (port 80/443) so signal stays high.
More in External Attack Surface
Pair Port & Service Scanner with the rest.
Live
SSL Monitor
Cert expiry, chain validation, TLS version audit, issuer change detection, SAN drift.
Live Uptime Monitor
HTTP, ICMP, TCP, and DNS checks from distributed probe nodes with 60s granularity.
Q2 2026 Domain Expiry
Registrar renewal + WHOIS/RDAP change tracking. 180/90/60/30/7-day alerts. Auto-renew status.
Q2 2026 DNS Monitor
A/AAAA/MX/TXT/CNAME drift. DNSSEC validation. Multi-resolver consensus. Nameserver health.
Roadmap
Be the first to know when it ships.
Join the waitlist and we'll email you when Port & Service Scanner is ready for design partners.