Active (pentest) testing. Ownership must be proven below first. Admins only.
sqlmap options
Every host here must have proven ownership.
Proof enumeration (no row data)
Only for targets you own and are explicitly authorized to test. Every destructive run is written to the audit log.
Target-selection flags (-g/-m/-r/-u/-l) are refused here — use the bulk/request fields, which check ownership.
MayoMain options — autonomous AI white-box pentest. Needs Docker, a built MayoMain engine, the source repo, and an AI provider key. Progress streams live below.
Passed to MayoMain with -c. Put credentials / login steps here for authenticated testing.
MayoMain runs
Leave blank to use the server-configured key, if any.
Prove ownership required for any URL target
Authorized targets
None yet.
Repositories product-managed source
Download a repo once; the product keeps it and updates it in place. Use it as a code-scan target or as the MayoMain source — no re-uploading.