
External port and vulnerability scans from your terminal
Visit WebsiteThe Bottom Line
Entry price
Free plan available, paid tiers above
Biggest pro
Zero installation, just run curl; no agent or software to deploy.
Biggest con
IPv4 only, IPv6 connections are refused.
TL;DR - qsa.sh
- Run curl qsa.sh from your terminal to instantly scan your public IP for open ports, services, and vulnerabilities using open-source tools.
- Results stream live and are never stored; you get a full external perspective without installing any software on your host.
- Three tiers: free (top 1,000 ports), Full subscription (all ports, async), and Deep one-time (full nuclei set with emailed report).
What is qsa.sh?
Pros & Cons
Pros
- Zero installation, just run curl; no agent or software to deploy.
- Transparent and auditable, uses only public open-source tools, no black box.
- Strictly limited to scanning your own IP, with consent gate and opt-out for operators.
Cons
- IPv4 only, IPv6 connections are refused.
- Free scan limited to one per 24 hours and only top 1,000 ports; Full and Deep require payment.
Key Features
Pricing Plans
Pricing checked Sep 7, 2026
Free
$0 / mo or Free
- Top 1,000 TCP ports
- -sV --script vulners
- ~2,000 curated vuln checks
- Ports, versions & top 3 findings
- Nothing stored
- 1 scan per 24h per IP
- Live terminal stream
- ~30 seconds typical time
Full Pro
$5 / mo
- All 65,535 TCP ports
- -sV --script vulners
- ~2,000 curated vuln checks, all ports
- Full list + remediation
- Single-read or 24h Redis · no DB
- 1 scan per hour per IP
- Async — returns when ready
- ~2–12 minutes typical time
Deep
$7 / scan
- All 65,535 TCP ports
- -sV --script vulners
- ~10,500 full set + custom vuln checks
- Full list + remediation, emailed
- Emailed · single-read or 24h Redis · no DB
- Unlimited scans per IP
- Async — emailed report
- ~13–16 minutes typical time
Is qsa.sh worth the price?
The pricing is generous for casual use with a free tier that covers the top 1,000 ports, but the $5/mo Full Pro tier is a steal for continuous scanning of all ports, while $7/scan for Deep is steep for occasional use.
The Free and Full Pro tiers offer excellent value for individuals and small teams, but the Deep tier's per-scan cost adds up fast for frequent scanning. Best for developers and security enthusiasts who need quick, no-fuss IP scans without managing infrastructure.
How qsa.sh's pricing compares
At $5/mo, qsa.sh is mid-range of its 4 direct competitors ($0.83 to $500/mo across the set).
Entry paid plan, monthly. Pricing checked Sep 7, 2026.
Reviews

Review qsa.sh, get a free AI guide
Share your experience and we will send you Improve Your Thinking Patterns Using ChatGPT, free.
Best qsa.sh Alternatives
Top alternatives based on features, pricing, and user needs.
Stop fraud fast and grow revenue faster with AI-powered digital trust and safety solutions.
Discover the value of risk intelligence to build resilience and proactively manage threats.
The industrial-grade terminal & SSH client, perfected with local encryption and neural intelligence.
Your AI teammate for security, identifying real vulnerabilities and empowering developers.
Access your Linux terminal securely from any device, anywhere, without SSH.
AI-powered appsec that finds real risk and fixes flaws
Comprehensive security monitoring and vulnerability scanning for your digital assets.
Still deciding?
Most buyers shortlist 2 or 3 tools before committing. Pull a side-by-side comparison or browse the full alternatives shortlist below.
Explore More
qsa.sh FAQ
How does qsa.sh help a developer quickly assess their public IP's security posture from the command line?
How does qsa.sh compare to Hacktron for scanning your own IP?
Does qsa.sh support scanning of IPv6 addresses or connections from proxies?
What kind of user benefits most from qsa.sh's ephemeral and transparent scanning workflow?
How is qsa.sh priced?
Can qsa.sh scan all 65,535 TCP ports or only a subset?
How does qsa.sh ensure that only the requesting IP is scanned and prevent misuse?
What tools does qsa.sh run under the hood during a scan?
Source: qsa.sh