
Instant external security scan of your own IP from your terminal
Visit WebsiteThe Bottom Line
Entry price
Free plan available, paid tiers above
Biggest pro
Zero installation – just run curl; no agent or software to deploy.
Biggest con
IPv4 only – IPv6 connections are refused.
TL;DR - qsa.sh
- Run curl qsa.sh from your terminal to instantly scan your public IP for open ports, services, and vulnerabilities using open-source tools.
- Results stream live and are never stored; you get a full external perspective without installing any software on your host.
- Three tiers: free (top 1,000 ports), Full subscription (all ports, async), and Deep one-time (full nuclei set with emailed report).
What is qsa.sh?
Pros & Cons
Pros
- Zero installation – just run curl; no agent or software to deploy.
- Transparent and auditable – uses only public open-source tools, no black box.
- Strictly limited to scanning your own IP, with consent gate and opt-out for operators.
Cons
- IPv4 only – IPv6 connections are refused.
- Free scan limited to one per 24 hours and only top 1,000 ports; Full and Deep require payment.
Key Features
Pricing Plans
Free
$0 / mo or Free
- Top 1,000 TCP ports
- -sV --script vulners
- ~2,000 curated vuln checks
- Ports, versions & top 3 findings
- Nothing stored
- 1 scan per 24h per IP
- Live terminal stream
- ~30 seconds typical time
Full Pro
$5 / mo
- All 65,535 TCP ports
- -sV --script vulners
- ~2,000 curated vuln checks, all ports
- Full list + remediation
- Single-read or 24h Redis · no DB
- 1 scan per hour per IP
- Async — returns when ready
- ~2–12 minutes typical time
Deep
$7 / scan
- All 65,535 TCP ports
- -sV --script vulners
- ~10,500 full set + custom vuln checks
- Full list + remediation, emailed
- Emailed · single-read or 24h Redis · no DB
- Unlimited scans per IP
- Async — emailed report
- ~13–16 minutes typical time
How qsa.sh's pricing compares
At $5/mo, qsa.sh is mid-range of its 6 direct competitors ($3.33 to $277.08/mo across the set).
Entry paid plan, monthly.
Reviews

Review qsa.sh, get a free AI guide
Share your experience and we will send you Improve Your Thinking Patterns Using ChatGPT, free.
Best qsa.sh Alternatives
Top alternatives based on features, pricing, and user needs.
Unified enterprise security for midsize businesses
Cybersecurity solutions for businesses and consumers
Website crawler for SEO audits
Vulnerability assessment scanner
Industry-leading cloud security solution for multi-cloud environments.
Unify security visibility, insight, and action across your entire attack surface with AI-powered exposure management.
Web security testing toolkit for penetration testers
Secure your code, dependencies, containers, and IaC from dev to production
Still deciding?
Most buyers shortlist 2 or 3 tools before committing. Pull a side-by-side comparison or browse the full alternatives shortlist below.
Explore More
qsa.sh FAQ
Can I use qsa.sh to scan someone else's IP address?
What happens if my internet connection uses Carrier-Grade NAT (CGNAT)?
How long does a free scan typically take?
What open-source tools does qsa.sh actually run?
Can I permanently stop qsa.sh from scanning an IP I control?
How are paid Full and Deep scan results delivered?
What prevents me from bypassing the IP restriction by using a VPN or proxy?
Is qsa.sh considered a vulnerability scanner that could be abused?
Source: qsa.sh