administrator-01001/WebSec-Scanner ? reverse-engineered prompt

Reverse engineered prompt

Build me a Python web security scanner that I can run from the command line against a site or domain.

I want it to support a few scan levels, from a quick check for headers, SSL, and basic tech detection, all the way up to a deeper scan that crawls pages, looks for hidden endpoints, checks common web vulnerabilities, and matches known CVEs for popular technologies. It should feel fast and practical, with sensible defaults, but let me turn up concurrency, set a proxy, add custom headers, and choose how much it crawls.

Please include a simple real time dashboard in the terminal, plus nice reports in HTML, JSON, and CSV so I can review the results later. The HTML report should look polished and group findings by severity.

I also want the scanner to be easy to extend with plugins, and it would be great if you include a small vulnerable sample app so I can test everything locally. If you need to check current library docs online, go ahead and do that.

Are you gonna build this?

make sure you review the code using coderabbit

Try freeSponsored — opens CodeRabbit in a new tab