Syhunt License Options

The Syhunt scanner comes in many editions, each targeted at a different set of needs. All licenses include 1 seat and 1 to 3 years of technical support, upgrades and vulnerability updates, two (2) web interface users and support for a specific number of scripting languages already included.

Product NameProduct CodeTypes of TestingNo. of Targets
Syhunt Hybrid Infinity UniversalHYB-INF-UNI Unlimited targets with:
All Languages Included
Syhunt Hybrid InfinityHYB-INF-CNL Unlimited targets with:
CI/CD integration
Syhunt Hybrid Platinum PlusHYB-PLS-UNL Unlimited targets
Syhunt Hybrid PlatinumHYB-PLA-UNL Unlimited targets
Syhunt Dynamic InfinityDYN-INF-CNL Unlimited targets with:
CI/CD integration
Syhunt Dynamic PlusDYN-PLS-UNL Unlimited targets
Syhunt Dynamic AugmentedDYN-AUG-UNL Unlimited targets
Syhunt Code Infinity UniversalCOD-INF-UNI Unlimited targets with:
with:
CI/CD integration
All Languages Included
Syhunt Code InfinityCOD-INF-CNL Unlimited targets with:
with CI/CD integration
Syhunt Code PlusCOD-PLS-UNL Unlimited targets
Syhunt Code (Web)COD-WEB-UNLUnlimited targets
Syhunt Mobile Infinity EssentialsCOD-MOB-CNL Unlimited targets with:
CI/CD integration
Essential Android/iOS Languages Included
Syhunt MobileCOD-MOB-UNLUnlimited targets

Syhunt Hybrid Infinity Universal

Combines comprehensive static and dynamic security scans to detect vulnerabilities like XSS, File Inclusion, SQL Injection, Command Execution and many more, including inferential, in-band and out-of-band attacks through Hybrid-Augmented Analysis (HAST).

Product NameSyhunt Hybrid Infinity Universal
SKU/Product CodeHYB-INF-UNI
Types of TestingDAST, OAST, SAST, FAST & MAST
No. of TargetsUnlimited targets
CI/CD IntegrationYes
Language SupportWeb - PHP, classic ASP, ASP.NET, Java, Kotlin, Node.js, Lua, Perl, Python & Ruby
Mobile - Java, Kotlin, Swift, Objective-C, C, C+, Object Pascal (Delphi) & Node.js
Product Datasheet Product Brief

Syhunt Hybrid Infinity

Combines comprehensive static and dynamic security scans to detect vulnerabilities like XSS, File Inclusion, SQL Injection, Command Execution and many more, including inferential, in-band and out-of-band attacks through Hybrid-Augmented Analysis (HAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Hybrid Infinity
SKU/Product CodeHYB-INF-CNL
Types of TestingDAST, OAST, SAST, FAST & MAST
No. of TargetsUnlimited targets
CI/CD IntegrationYes
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Dynamic Infinity

Comes with a wide array of features to detect and help you fix your web application security vulnerabilities with minimal effort. Tests the web application response to thousands of different web attacks often carried by real-world adversaries, including inferential, in-band and out-of-band attacks through Augmented Dynamic Analysis (OAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Dynamic Infinity
SKU/Product CodeDYN-INF-CNL
Types of TestingDAST & OAST
No. of TargetsUnlimited
CI/CD IntegrationYes
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Code Infinity Universal

Enables developers and QA (Quality Assurance) testers to automatically scan any kind of mobile or web application source code for potential security vulnerabilities. This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Code Infinity Universal
SKU/Product CodeCOD-INF-UNI
Types of TestingSAST & MAST
No. of TargetsUnlimited
CI/CD IntegrationYes
Language SupportWeb - PHP, classic ASP, ASP.NET, Java, Kotlin, Node.js, Lua, Perl, Python & Ruby
Mobile - Java, Kotlin, Swift, Objective-C, C, C+, Object Pascal (Delphi) & Node.js
Product Datasheet Product Brief

Syhunt Code Infinity

Enables developers and QA (Quality Assurance) testers to automatically scan any kind of mobile or web application source code for potential security vulnerabilities. This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Code Infinity
SKU/Product CodeCOD-INF-CNL
Types of TestingSAST & MAST
No. of TargetsUnlimited
CI/CD IntegrationYes
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Mobile Infinity Essentials

Enables publishers, developers and QA testers to automatically scan Android and iOS mobile apps for the OWASP Mobile Top 10 and other vulnerabilities. Find the vulnerable portions of the code in minutes and patch them before making app updates available to users. This license covers four (4) essential mobile programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional mobile programming languages can be ordered separately.

Product NameMobile Infinity Essentials
SKU/Product CodeCOD-MOB-CNL
Types of TestingMAST
No. of TargetsUnlimited
CI/CD IntegrationYes
Language SupportFour (4) languages included (Java, Kotlin, Swift & ObjectiveC). Additional mobile languages can be ordered separately
Product Datasheet Product Brief

Syhunt Hybrid Platinum Plus

Allows to scan both web applications and mobile applications for vulnerabilities. Combines comprehensive static and dynamic security scans to detect vulnerabilities like XSS, File Inclusion, SQL Injection, Command Execution and many more, including inferential, in-band and out-of-band attacks through Hybrid-Augmented Analysis (HAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Hybrid Platinum Plus
SKU/Product CodeHYB-PLS-UNL
Types of TestingDAST, OAST, SAST & MAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Hybrid Platinum

Combines comprehensive static and dynamic security scans to detect vulnerabilities like XSS, File Inclusion, SQL Injection, Command Execution and many more, including inferential, in-band and out-of-band attacks through Hybrid-Augmented Analysis (HAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Hybrid Platinum
SKU/Product CodeHYB-PLA-UNL
Types of TestingDAST, OAST & SAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief (Platinum & Standard)

Syhunt Dynamic Plus

Comes with a wide array of features to detect and help you fix your web application security vulnerabilities with minimal effort. Tests the web application response to thousands of different web attacks often carried by real-world adversaries, including inferential, in-band and out-of-band attacks through Augmented Dynamic Analysis (OAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Dynamic Plus
SKU/Product CodeDYN-PLS-UNL
Types of TestingDAST, OAST & FAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Dynamic Augmented

Comes with a wide array of features to detect and help you fix your web application security vulnerabilities with minimal effort. Tests the web application response to thousands of different web attacks often carried by real-world adversaries, including inferential, in-band and out-of-band attacks through Augmented Dynamic Analysis (OAST). This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Dynamic Augmented
SKU/Product CodeDYN-AUG-UNL
Types of TestingDAST & OAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Code Plus

Enables developers and QA (Quality Assurance) testers to automatically scan any kind of mobile or web application source code for potential security vulnerabilities. This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Code Plus
SKU/Product CodeCOD-PLS-UNL
Types of TestingSAST & MAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Product Brief

Syhunt Code (Web)

Enables web developers and QA (Quality Assurance) testers to automatically scan any kind of web application source code for potential security vulnerabilities This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.

Product NameSyhunt Code (Web)
SKU/Product CodeCOD-WEB-UNL
Types of TestingSAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported backend languages). Additional languages can be ordered separately
Product Datasheet Datasheet

Syhunt Mobile

Enables publishers, developers and QA testers to automatically scan Android and iOS mobile apps for the OWASP Mobile Top 10 and other vulnerabilities. Find the vulnerable portions of the code in minutes and patch them before making app updates available to users. This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional mobile programming languages can be ordered separately.

Product NameSyhunt Mobile
SKU/Product CodeCOD-MOB-UNL
Types of TestingMAST
No. of TargetsUnlimited
CI/CD IntegrationNo
Language SupportA single language included (must select from the list of supported mobile languages, highlighted with green color). Additional mobile languages can be ordered separately
Product Datasheet Datasheet

Target Types

Targets supported by a product license can be:

Unlimited targets (UNL)

Unlimited target licenses were created to address the application security needs of micro to small organizations.

  1. This license covers a single supported programming language and allows to scan unlimited targets, which can be scanned for an unlimited number of times. Coverage for additional programming languages can be ordered separately.
  2. For DAST, the license allows to scan an unlimited number of domains and all its subdomains.
  3. For SAST/MAST, an unlimited number of code repositories or directories can be scanned.
  4. When DWET is included in the license, third-party score query does not include access to compromised data that relates to queried domains.
  5. When, during a scan, Syhunt identifies a programming language not covered by the user license as part of a DAST, MAST or SAST target, Syhunt performs a partial scan, on which checks tailored for the missing language are not performed, and issues a warning.
  6. You can order Premium domain targets and repositories separately, each offering special benefits and capabilities.

Unlimited for CI/CD (CNL)

Unlimited target licenses (also known as Infinity) with CI/CD integration were created to address the application security needs of small to large organizations:

  • Small businesses that start to adopt CI/CD pipelines as they grow and encounter the need for more streamlined software development processes.
  • Medium-sized businesses that have dedicated IT teams capable of implementing CI/CD pipelines.
  • Large enterprises that adopt CI/CD as a standard practice to improve software delivery speed and reliability.
  1. Includes all rights from UNL type license, and adds the following rights:
  2. Authorization and support for CI/CD pipeline integration with supported platforms like GitLab, GitHub and Jenkins for securing own application ecosystem. It is not allowed to integrate the tool with the CI/CD pipeline of another organization.
  3. Permission to use Syhunt in consultant services (vulnerability assessment, pen-testing and code review services) to scan your customers (if applicable) is included.

Unlimited Universal for CI/CD (UNI)

Universal licenses (also known as Infinity Universal) with CI/CD integration and coverage for all supported programming languages were created to address the application security needs of medium to large organizations:

  1. Includes all rights from UNL type license, and adds the following rights:
  2. Authorization and support for CI/CD pipeline integration with supported platforms like GitLab, GitHub and Jenkins for securing own application ecosystem. It is not allowed to integrate the tool with the CI/CD pipeline of another organization.
  3. Instead of offering a limited (expandable) number of programming languages, all existing programming languages are already included, and newly added and supported programming languages released during the license's term (eg 1 to 3 year, depending on the license ordered) will be automatically added at no additional cost. Purchasing a multi-year (2 or 3 year) license reduces future costs associated with covering new programming languages and frameworks, as these will be automatically included at no extra cost.
  4. Permission to use Syhunt in consultant services (vulnerability assessment, pen-testing and code review services) to scan your customers (if applicable) is included.
Target CodeNo. of TargetsNo. of LanguagesExamples
UNIUnlimited targets with CI/CD pipeline integration (own), consultant usage permission and universal access to supported programming languagesAll Supported Languages + NewScan URL:
www.mydomain1.com
www.mydomain2.com
Scan Code:
anygit.com/anyuser/anyproject.git
CNLUnlimited targets with CI/CD pipeline integration (own), and consultant usage permission)Single (1) LanguageScan URL:
www.mydomain1.com
www.mydomain2.com
Scan Code:
anygit.com/anyuser/anyproject.git
UNLUnlimited targets with no CI/CD pipeline integration
After June 24, 2024, this license removed CI/CD pipeline integration. When renewing their term, clients with CI/CD needs must migrate to CNL type or UNI type license (above)
Single (1) LanguageScan URL:
www.mydomain1.com
www.mydomain2.com
Scan Code:
anygit.com/anyuser/anyproject.git
DOM or WLCDomain (Wildcard) target, DAST only
*.mydomain.com
Single (1) LanguageScan URL:
mydomain.com
www.mydomain.com
subdomain1.mydomain.com
subdomain2.mydomain.com

License Models, Terms & Conditions

CodePeriodSKU Example
1YRSubscription valid for a one (1) year period.HYB-PLS-UNL-1YR
2YRSubscription valid for a two (2) year period.HYB-PLS-UNL-2YR
3YRSubscription valid for a three (3) year period.HYB-PLS-UNL-3YR
  1. A yearly subscription license (1YR, 2YR or 3YR) grants the user with a valid license key for the product for a limited period. When the period expires, the user needs to purchase a new license key in order to continue using Syhunt. A subcription license comes with 1 to 3 years of software maintenance and two (2) web interface users. Upon expiration of the limited period, if the subscription is not renewed, the Syhunt license shall automatically become disabled.
  2. Software maintenance - a yearly support plan that grants the user the right to product updates, tech support and integration with its online services, such as Syhunt's OAST service Syhunt Signal. The product update right means that the user is entitled to new version and updates of the software for free during the period of the maintenance plan, which is effective for a period up until one year, after which the user needs to extend it. The user is encouraged to purchase maintenance annually with no lapse.
  3. Syhunt's End User License Agreement (EULA) apply as well to any of the licenses above. The EULA must be accepted prior to installing and running the software.
  4. Syhunt is licensed per seat and per web interface users - a seat is a device, as explained below.

Seats & Integrations

  1. Syhunt is licensed per device, whether physical or virtual, and per quantity of web interface users. Each virtual machine on the same host PC needs it's own license for Syhunt.
  2. Each license allows installation on 1 device and includes two web interface users - an admin and a secondary user. Additional users can be purchased if needed, expanding the number of users, and will be prorated based on the remaining license term duration (1 year, 2 years, or 3 years)
  3. For Infinity licenses only: If a Jenkins agent or Jenkins server, or GitLab runner agent, is installed and configured on this device, they can integrate and interoperate with the installed, licensed copy of Syhunt, allowing Syhunt to be called from within pipeline scripts, as documented in our integrations documentation.
  4. Due to the availability of Syhunt for Linux, the Syhunt license that allows to install Syhunt into a single device now allows two devices, as long as the first device is a Windows machine and the second device a Linux machine. Please note that some feature limitations may apply to the Linux version of Syhunt. If you have a license with permission for multiple devices or if you purchase additional licenses of Syhunt to be installed on additional devices, when installing Syhunt on such additional devices, it will be necessary to select between the Windows or Linux version of Syhunt.

Language Selection

Some licenses include support for scanning applications written in all programming languages, while others support at least one programming language. The language must be selected from the below list of supported languages at the moment of license purchase. Additional languages can be purchased if needed, expanding the number of languages, and will be prorated based on the remaining license term duration (1 year, 2 years, or 3 years).

SKULanguage
XTA-LNG-HTMHTML. Already included at no additional cost.
XTA-LNG-JSCJavaScript client-side. Already included at no additional cost. Includes client-side TypeScript support
XTA-LNG-PHPPHP
XTA-LNG-ASPASP Classic (VBScript & JScript)
XTA-LNG-ANTASP.NET (C# & VB.NET)
XTA-LNG-JAVJava (JEE / JSP)
XTA-LNG-NJSNode.JS (including Express.js & Koa.js, and server-side TypeScript)
XTA-LNG-PYTPython (including CGI, Django, mod_python & WSGI)
XTA-LNG-PRLPerl
XTA-LNG-LUALua (ngx_lua, mod_lua, CGILua & Lua Pages)
XTA-LNG-RUBRuby (including Rails & ERB)
XTA-LNG-PASObject Pascal (Delphi XE and older, Lazarus & DWS)
XTA-LNG-KOTKotlin (including Ktor)
XTA-LNG-SWTSwift (mobile only, requires license with MAST included)
XTA-LNG-OBCObjectiveC (mobile only, requires license with MAST included)

Languages highlighted with green will come with MAST support if the license includes MAST capability.

Glossary

SASTStatic analysis of the security of a web application's source code
MASTStatic analysis of the security of a mobile application's source code (Android & iOS) and Android APK file
DASTDynamic analysis of the security of a web application security with deep crawling and parameter injection
OASTAugmented dynamic analysis of the security of a web application security with out-of-band (OOB) techniques
HASTHybrid-Augmented analysis of the security of web applications, on which the results of the static analysis are automatically used to enhance its augmented dynamic analysis
DWETSurface to dark web exposure scoring of Internet domains
FASTForensic analysis of the security of a web application through the analysis of web server log files

Contact