What is Detectify?
Detectify sends this traffic while assessing a web application for security weaknesses. The customer creates a Scan Profile for an asset and controls the scope of the assessment. This is an authorized test of that application, not an attempt to build a general web index.
Application Scanning begins at the root and can try likely application paths before following discovered pages. The scanner exercises forms and buttons as part of its testing, so careless scope can send messages or change application state. Included paths add starting points; avoided paths keep the scanner away from sensitive or costly sections. The profile can also limit requests per second and exclude subdomains.
The normal Application Scanning header starts with Mozilla/5.0 (compatible; Detectify) and includes a Detectify link with a scan token. That link provides details about who started the scan and when. API scans add their own marker, and customers can select another device header or supply a custom value. Detectify therefore recommends checking its current source addresses before trusting a request.
No part of the supplied record or operator documentation assigns this scanner an AI search or model-training role. It discovers pages only as needed for the customer's security assessment. A block can prevent findings from reaching that customer, but it does not opt the content out of AI use.
