Escape Documentation¶
Escape is an offensive-security platform for AppSec and ProdSec teams. It discovers your attack surface, tests it with business-logic aware agents, validates exploitability, and delivers AI-assisted remediations into engineering workflows.
Start Here¶
- Introduction to Escape: the platform, the key concepts, and the security problems we solve.
- Choose Your Product: ASM, DAST, AI Pentesting, and how they fit together.
Explore the Platform¶
- ASM: discover every asset exposed on the internet and keep your inventory live.
- DAST: run business-logic aware scans against APIs, web apps, and LLM-backed endpoints.
- AI Pentesting: agentic attackers that reason across your graph and prove exploitability.
- Platform: authentication, private locations, firewall, and scan quality controls.
- Integrations: hook Escape into your cloud providers, repositories, CI/CD, and ticketing.
- Governance: triage, reporting, and compliance against OWASP, PCI-DSS, SOC 2, and more.
- Tooling: CLI, public API, and the MCP Server for programmatic control.
- Enterprise: SSO, RBAC, audit logs, and privacy controls.
Get Help¶
Reach out on your dedicated support channel, or email us at support@escape.tech.
Index¶
Introduction¶
- Introduction to Escape
- Choose Your Product
- Quickstart
- Concepts and Glossary
- Supported Targets
ASM¶
- Quick Start
- Asset Management
- Technologies
- Network Configuration
- Shadow API Discovery
- Code Owners and Routing
- Scope Management
- Network Scanning
- CVE Scanning
- ASM Integrations 13
Business Logic DAST¶
- Start a new Scan
- Understanding Results
- API Testing 8
- WebApp Testing 10
- LLM Security Testing 1
- Multi-User Testing 2
- Custom Rules 8
AI Pentesting¶
- Quickstart
- How It Works
- BOLA Agent
- Graph Reasoning
- Proof of Exploit
- XSS Agent
- Regression Testing Agent
- Business Logic Agent
- CVE Exploitation Agent
- Whitebox Agent
- SQLI Agent
- Multi-Agent Pentest
- JS Analysis Agent
Remediate¶
- AI Remediation
- Escape Copilot
- Escape for Claude
- IDE Integration Guide
Automate¶
- Custom Integrations
- Escape MCP
- Public API
- Schedule Scans
- Testing in CI/CD 11
- Escape CLI 15
- Ticketing Integrations 7
- Workflows 8
Governance¶
- Issue Management
- Results, Issues & Triage
- Risk Scoring
- Compliance 7
- Reporting 1
Platform¶
- Firewall Configuration
- Internal Network Scanning
- Scan Quality & Debugging 7
- Authentication 18
- Private Locations 14
Enterprise¶
- AI Policy
- Logs
- Privacy & Security
- Private Tenant
- Rotating Encryption Keys
- Support & SLA
- SSO & Identity Federation
- RBAC 8
Reference¶
- Authentication Reference
- Custom Rules Reference
- Data Types Reference
- Configuration Schemas 6
- Security Tests (289) 290