Subdomain Vulnerability Scanner
Performs exhaustive subdomain enumeration by querying free DNS, certificate transparency logs, and public DNS APIs, then analyzes for misconfigurations, exposed sensitive files, or outdated endpoints
Try it
curl -X GET 'https://subdomain-vulnerability-scanner.apimesh.xyz/preview?domain=example.com'
Use cases
- security teams use it to continuously monitor corporate subdomains for misconfigurations and exposures.
- devops teams integrate it into deployment pipelines to catch risky subdomains before going live.
- webmasters audit their domain structures regularly to ensure no outdated or sensitive endpoints are exposed.
Payment methods
Every endpoint supports three payment methods:
- x402 — pay per call with USDC on Base. No signup needed.
- MPP — Stripe Machine Payments Protocol. Cards + stablecoins.
- API key — traditional auth. Sign up and buy credits.
MCP integration
npx @mbeato/apimesh-mcp-server
Adds all APIMesh tools to Claude, Cursor, Windsurf, or any MCP client.