Basic scan
Scan a website with default settings:Scan with custom timeout
For slow servers or networks, increase the timeout to 30 seconds:Scan through proxy
Route traffic through Burp Suite or another proxy for debugging:Scan with redirects enabled
Follow HTTP redirects to scan the final destination:- The URL redirects from HTTP to HTTPS
- The domain redirects to a www subdomain
- The path redirects to a different location
List all detectors
View all WAF signatures that whatwaf can recognize:Combined options
Combine multiple options for advanced scanning:- Uses a 30-second timeout per request
- Follows HTTP redirects
- Routes traffic through a local proxy on port 8080