Run diagnostic checks

Use Nmap, OpenSSL, BusyBox, search and guided Metasploit workflows.

A diagnostic is an on-demand task

Use the assistant for a check you want to run now. Use a monitoring endpoint when you want repeated observations and alerts. Choose an agent that can reach the target and has the required tools.

“Using my office agent, run an Nmap TCP scan of the ports I specify on my server and explain the result” provides more useful scope than “scan everything.” Follow the Acceptable Use Policy.

Network and TLS tools

Nmap can discover hosts and inspect ports and services on supported desktop agents. NSE vulnerability checks require the full tool and scripts. On ESP32, Nmap is a bounded TCP scan/discovery implementation: no NSE, UDP scan or OS fingerprinting; service labels are hints rather than active version detection.

OpenSSL helps inspect TLS connections, certificates and configuration. ESP32 provides selected typed TLS diagnostics rather than the complete desktop command line. BusyBox provides supported command-line utilities on capable agents. Inspect returned output and errors before drawing a conclusion.

Primary references: Nmap reference guide, OpenSSL manuals, BusyBox documentation.

Guided Metasploit work

The Penetration expert can search modules, explain their options and run a specified module. The Live expert can work through a persistent console session. Use a clear authorised scope and stop when the task is complete.

Linux and Windows require suitable tools and account entitlement; Windows needs a separate Metasploit Framework installation. Android and ESP32 do not execute Metasploit. See Rapid7’s Framework documentation and the Windows setup guide.

Search, crawl and Space maintenance

Search can retrieve web results, inspect a page, crawl site links or engage with a supported website workflow. Browser-dependent tasks require a capable agent. Crawling and Hugging Face Space wake/keep-alive tasks depend on the remote page and access controls; they do not guarantee that a Space will remain running.

The recurring alternatives are listed in the endpoint reference. Read the Hugging Face Spaces documentation for the upstream service behaviour.

Built-in command reference

These are command processor names for on-demand operations, not the lowercase periodic endpoint names. Available commands follow the selected agent and your account.

CommandPurpose
PingICMP connectivity check.
NmapHost and port diagnostics.
OpensslTLS and certificate diagnostics.
BusyboxSupported command-line utility tasks.
MetaMetasploit module search, information and execution.
MetaLiveStateful Metasploit console session.
SearchWebWeb search.
SearchEngageSupported browser engagement workflow.
CrawlPageInspect a single page.
CrawlSiteFollow links in a site.
HugSpaceWakeAttempt a Space wake workflow.
HugSpaceKeepAliveAttempt Space activity/keep-alive.
QuantumConnectPost-quantum TLS key-exchange check.
QuantumPortScannerLook for quantum-capable services.
QuantumInfoAlgorithm information.
QuantumCertPost-quantum certificate inspection.
BleBroadcastCapture/decode a selected BLE advertisement.
BleBroadcastListenBounded nearby BLE discovery.
CameraCaptureRTSP/ONVIF still capture.

For special workflows, see quantum readiness, Bluetooth sensors, cameras and custom commands.

Keep exploring

Use the AI assistant

Meet the experts, select your agent, use voice and return to saved conversations.

Check quantum readiness

Test post-quantum key exchange and certificates, and understand what the results mean.

Custom checks and workflows

Choose between a periodic Connect, a one-off command processor and a reusable AgentFlow.