Complete AI Training
Sign inGet my AI kit

Your job's AI kit

Get your AI kit

Tell us who you are and what you do. We show you your kit right away and email you the link: skills, prompts, AI agents, MCP servers and courses for your job.

500+ jobs ready, and we make a kit for any other job. No payment needed to look.

Share

AI agent for penetration testers

Out-of-Scope Asset Alert Agent

No test traffic reaches anything outside the signed scope, and every doubtful asset has a written decision

Out-of-Scope Asset Alert Agent: what goes in, what the agent does and what you get

What it does

On a live engagement, tools keep finding new hosts, and one wrong scan can hit a system the client never approved. This agent keeps the signed scope document open next to the live target list and the scan logs. Every few minutes it reads new discoveries and new scan targets, resolves domains to addresses, and compares each one with the in-scope ranges and the exclusions list. If something falls outside, it flags it and pauses the queued tasks that touch it. It then checks the scan logs to confirm nothing was sent to that address after the flag. If a packet did go out, it records the time and the tool. It drafts a short scope question to the client and waits. Only the lead can change scope. Edge case: a cloud load balancer moves to a new IP owned by the same provider, so the agent asks for written confirmation rather than assuming it is in scope.

How it works

Follow the arrows from top to bottom. The orange dashed arrow is the loop: when a check fails, the agent goes back and tries again.

Start and resultWhat it doesA check on its own workWaits for your OKGoes back and retries
Yes, continueYes, continueApprovedNoNo 1 STARTS WHEN Engagement is active and a scan or discoveryproduces new targets 2 USES A TOOL Read the signed scope, exclusions and the livetarget list 3 DOES Resolve each new domain to its addresses and owners 4 CHECKS THE RESULT Is every target inside the signed scope and off theexclusion list? If not: flag the asset, pause queued tasks that touch itand log the time. Back to step 3. 5 USES A TOOL Search scan logs for traffic sent to the flaggedasset after discovery 6 CHECKS THE RESULT Did any test traffic reach the out-of-scope asset? If not: record the tool, time and payload and mark it asan incident for the lead. Back to step 5. 7 DOES Draft a scope question to the client with the asset,how it was found and why it is doubtful 8 YOU APPROVE Lead approves any scope change or sends the clientnote 9 USES A TOOL Update the target list and resume only the approvedtasks 10 RESULT Scope log with every decision and timestamp
Read the steps as a list
  1. Engagement is active and a scan or discovery produces new targets
  2. Read the signed scope, exclusions and the live target list
  3. Resolve each new domain to its addresses and owners
  4. Is every target inside the signed scope and off the exclusion list?If not: flag the asset, pause queued tasks that touch it and log the time. Back to step 3.
  5. Search scan logs for traffic sent to the flagged asset after discovery
  6. Did any test traffic reach the out-of-scope asset?If not: record the tool, time and payload and mark it as an incident for the lead. Back to step 5.
  7. Draft a scope question to the client with the asset, how it was found and why it is doubtful
  8. Lead approves any scope change or sends the client noteThe agent waits here for your OK.
  9. Update the target list and resume only the approved tasks
  10. Scope log with every decision and timestamp

How it decides

An asset is in scope only if it matches a listed range or domain and is not on the exclusion list. Anything unclear is treated as out of scope until the lead decides.

  • Treat a new IP on a listed provider as out of scope until the client confirms in writing
  • Pause every queued task for an asset the moment it is flagged
  • Never remove an exclusion entry without the lead's approval
  • Escalate at once if traffic reached an excluded system

Make it yours

Every agent is a starting point. You choose these settings for your own situation.

  • How often it checks (default every 5 minutes)
  • Which tools' logs it reads
  • Who receives incident alerts
  • Whether it pauses tasks automatically (default yes)

What keeps you in control

It always asks you first

  • Any change to the scope list
  • Sending the scope question to the client
  • Resuming paused tasks

Hard limits

  • Never expands scope on its own
  • Never deletes or edits the signed scope document

It stops when

  • Done: all targets match the scope or have a written decision
  • Stop: traffic reached an excluded system, lead decides next steps

Set it up

We guide you through the set-up, step by step

Members get the full set-up guide for this agent. No technical skills needed: you copy, paste and upload.

10 minto set it up in your AI
5 AIsChatGPT, Claude, Copilot, Gemini, Grok
  • One set of instructions to paste into your AI, with the clicks for ChatGPT, Claude, Microsoft 365 Copilot, Gemini and Grok
  • The agent then walks you through connecting your own data, one source at a time
  • A downloadable copy with the flow chart, the rules and the full guide
Get access to this agent

An example run

What happensOn day 3 of a web engagement for Northfield Dental, a subdomain scan found billing.northfielddental.example resolving to 203.0.113.40, outside the listed range. The agent paused two queued scans and checked logs, finding one port probe sent 9 minutes earlier. It logged the probe and drafted a question to the client contact. The lead approved the note, the client confirmed the host was a third-party vendor, and it stayed out of scope.

More agents for penetration testers