Sentinel and the professional scanners
ZAP, Burp Suite and Nuclei are the tools security testers use. They check far more than Sentinel does, and they test in ways Sentinel deliberately will not. Sentinel is not a replacement for them or for the person who uses them.
What is different
| A professional scanner | Sentinel | |
|---|---|---|
| Made for | People who test security as their job | A business owner with no security knowledge |
| To start | Install it, then choose what to scan and how | Enter an address |
| What it will scan | Whatever it is pointed at | Only a website the account has proven it owns, proven again before every check |
| How it tests | Reads and attacks: sends data built to trigger weaknesses | Reads only. It cannot submit a form or send a request body |
| How much it checks | Thousands of checks, added to by many people | 13 checks that can report 44 problems |
| What you get back | Findings for a specialist to interpret | A plain-English list, with the words to forward to your web person |
| Over time | A scan when someone runs one | The same check every week, each problem tracked until it is gone |
Which do you need?
A professional scanner, and someone to run it
If your site takes payments itself, holds sensitive records, has custom-built features behind a login, or you have been asked for a penetration test. That work needs a person, and tools that test what Sentinel does not.
Sentinel
If nobody is looking at your website's security at all, and you want to know every week whether something obvious has gone wrong: an expired certificate, a file left where anyone can read it, software past its support. $29 a month for up to 3 websites.
What each tool says about itself
Quoted from each tool's own website on 10 October 2026. Sentinel does not contain or use any of them: every check is written by STRATIC.
- ZAP (zaproxy.org)
- “The world’s most widely used web app scanner.”
- “Free and open source.”
- “If you are new to security testing, then ZAP has you very much in mind.”
- Burp Suite (portswigger.net/burp)
- Burp Suite Professional: “The world's #1 web penetration testing toolkit.” “Best for pentesters and hands-on security professionals.”
- Burp Suite DAST: “The enterprise-enabled dynamic web vulnerability scanner.”
- Burp Suite Community Edition: “The best manual tools to start web security testing.”
- Nuclei (docs.projectdiscovery.io)
- “A fast vulnerability scanner designed to probe modern applications”, “powered by simple YAML-based templates.”
- “With over 6500 templates contributed thus far”, “backed by hundreds of community members.”
- Its documentation lists its users as security engineers and analysts, red teams, DevOps teams, bug bounty hunters and penetration testers.
See what Sentinel finds on your own website.
Start free trial