Automated web/API security scanner producing pentest-style reports
CyberLens scans a website or API for common security misconfigurations —
missing security headers, TLS/certificate issues, JWT weaknesses, exposed
secrets, discoverable forms (including an authenticated crawl mode that
logs in as a real user first) — and writes a structured PDF/HTML/JSON
report modeled on a professional pentest deliverable.
Playwright browser engines are not bundled with this snap (each is
100MB+). After installing, run cyberlens install-browsers once to
download one; every scanner except storage/clickjacking/xss and the
crawler's JavaScript-rendering path works without it.
Only scan targets you own or have explicit, documented authorization to
test.