How to Use BountyHunter AI
Your complete guide to finding vulnerabilities with AI-powered security scanning
Getting Started
1 Create Account
Sign up for a free account to get started. You'll get access to all basic scanning features.
- Free tier includes 10 scans/month
- Access to all scanner types
- AI-powered vulnerability analysis
2 Configure Target
Enter the URL or IP address of the target you want to scan. Make sure you have permission!
3 Choose Scan Type
Select the appropriate scan type based on your needs:
- Quick: Fast surface-level scan
- Comprehensive: Full vulnerability assessment
- SecureMCP: AI/MCP application testing
4 Review Results
Once the scan completes, review the findings with AI-enhanced analysis and remediation suggestions.
Running Your First Scan
Step-by-Step Guide
- Navigate to Scanner: Click on the Scanner tab in the navigation menu
- Enter Target URL: Input your target URL (e.g., https://example.com)
- Select Scan Type: Choose "Comprehensive" for your first scan
- Enable AI Analysis: Toggle the AI enhancement option for deeper insights
- Start Scan: Click the "Start Scan" button
- Monitor Progress: Watch the real-time progress updates
- View Results: Navigate to Vulnerabilities tab to see findings
Understanding Scan Results
Severity Levels
Immediate action required. Can lead to system compromise.
Significant risk. Should be fixed soon.
Moderate risk. Plan remediation.
Minor issue. Fix when convenient.
AI Analysis Features
- Automated vulnerability explanation in plain English
- Business impact assessment
- Step-by-step remediation guidance
- False positive probability scoring
- Related CVE identification
- Exploit chain detection
API Integration
Integrate BountyHunter AI into your CI/CD pipeline or security automation workflow.
Authentication
Start a Scan
/api/v1/scan/start
Get Scan Results
/api/v1/scan/{scan_id}
Best Practices
Scan Scheduling
- Run comprehensive scans during off-peak hours
- Schedule regular scans for continuous monitoring
- Use quick scans for rapid assessments
Permission & Ethics
- Always obtain written permission before scanning
- Follow responsible disclosure practices
- Respect rate limits and server resources
Result Management
- Prioritize critical and high severity findings
- Verify findings before reporting
- Track remediation progress
AI Optimization
- Provide context for better AI analysis
- Use AI chat for clarification
- Review AI confidence scores
Troubleshooting
Common Issues
Scan is taking too long
Large sites or comprehensive scans can take 10-30 minutes. You can:
- Use Quick scan for faster results
- Limit scan scope to specific paths
- Check your network connection
No vulnerabilities found
This could mean:
- The target is well-secured (good news!)
- The scan type doesn't match the target
- WAF or security measures are blocking scans
API authentication errors
Check that:
- Your API token hasn't expired
- You're using the correct Authorization header format
- Your account has API access enabled
Quick Links & Resources
Check out our Scan Types Guide for detailed information about each scanner, or contact our support team at support@bountyhunter.ai