dorkhound is a self-hosted offensive-security tool that finds exposed services, captures what they actually say, fingerprints them and reports graded findings, over an index you build and keep. It is not a front-end to Shodan: no code path calls the competitor's API, because owning the index is the point.
A stateless SYN sweep finds what is listening; the capture stage then reads the banner, speaks the protocols that never announce themselves, fingerprints the service and grades the finding. Against a deliberately vulnerable target stack that took fingerprint coverage from 10 of 24 to 17 of 24, and findings from 4 to 21.
Every traffic-originating command requires an engagement and a matching authorisation file. The target is re-checked against that scope at run time: off-scope, dorkhound exits 4 and sends nothing.
A licence key unlocks the self-hosted application. Solo is £69/month for one operator seat, Studio is £359/month for five, and the Founding licence is £499 once, limited to the first hundred operators. None of them is metered in query credits.
Pricing · The safety model · Get a licence