Skip to main content
The scan command performs a comprehensive security assessment of your endpoint, checking for vulnerabilities, misconfigurations, outdated software, and known threats. Results are scored and prioritized by AI so you can focus on what matters most.

Usage

Options

flag
Run a fast scan covering only critical checks.
string
Write the scan results to the specified file path. Supports .json, .html, and .pdf formats based on file extension.
string
default:"en"
Set the output language for scan results (e.g., en, zh-TW, ja).
flag
Show detailed output including individual check progress and debug information.

Examples

Scan Types

What Gets Scanned

  • System vulnerabilities — CVE database matching against installed packages
  • Configuration audit — CIS benchmark checks for OS hardening
  • Network exposure — Open ports, listening services, firewall rules
  • Malware detection — ATR rule matching and hash lookups
  • File integrity — Checks against known-good baselines
  • User accounts — Privilege escalation risks, weak credentials

First Scan Guide

Step-by-step walkthrough of your first security scan.

Scanners Reference

Detailed documentation for each scanner module.

Risk Scoring

How Panguard AI prioritizes and scores findings.

panguard report

Generate compliance reports from scan data.