Run curl qsa.sh for a one-command external security scan of your server's own public IP — naabu, nmap + vulners, and nuclei map your open ports, service versions, and known CVEs, streamed straight to your terminal in ~30 seconds. See exactly what the internet sees of your host: no account, nothing stored. Free scans run live; paid Pro (all 65,535 ports, async) and one-time Deep (the full nuclei firehose, emailed) dig deeper uncovering vulnerabilities below the surface.
Exploring options beyond qsa.sh? Try ZeroThreat.ai and Astra Security for rapid, AI-driven pentests, or go open-source with Strix to unleash autonomous app attackers. Home users can audit devices with Fing, while builders can spin up testable endpoints via AGG Loop ex-Deposure.