Skip to main content
Seeds

Web Applications

Add full application URLs as web application seeds so Guard can test them, then review each app from its seed drawer.

Seeds → Web Applications is where you seed full application URLs for testing. This guide walks you through adding a URL.

Open Web Applications

  1. Go to Seeds → Web Applications.

Add a URL

  1. Click Add Seeds.
  2. Select Web Applications.
  3. Enter each full URL (for example https://app.example.com) on its own line, or click Import from File.
  4. Click Next. Skip Authentication is selected by default.
  5. Click Add Seeds.

Use this tab for application URLs, not bare domains (those belong on Domains).

Add an API definition

  1. Click Add Seeds.
  2. Select Web Services.
  3. Enter each API definition URL (for example https://example.com/api/openapi.json) on its own line. This option has no Import from File button.
  4. Click Next. Skip Authentication is selected by default. A web service can only take a token credential, not the login methods in Authenticated Scanning.
  5. Click Add Seeds.

The seed appears on this tab.

Review a web application

Click a row to open its drawer. The tabs are Overview, Application (the sitemap and REST API endpoints Guard found), Vulnerabilities, Attribution, History, and Notes.

Authenticated scanning

To scan behind a login, add a credential from the Manage menu. See Authenticated Scanning.

Support

If the seed still will not scan, reach out to support@praetorian.com.