FAQ & Docs

Get set up and get answers.

Everything you need to run your first scan, plus answers to the questions we hear most. Detailed, step-by-step setup lives inside your account once you sign in.

Quick start

From account to report in four steps.

The whole flow takes a few minutes. No console, no scripts, no production impact.

1

Create your account

Sign up in the Insight Recon portal. No credit card required for the free scan.

2

Install the scanner

Download the installer from your account and install it on a domain-joined Windows machine.

3

Run your scan

Point it at your domain with a read-only account. It reads Active Directory read-only in minutes.

4

Review your report

Findings, attacker insight, remediation, and your posture score appear in the portal.

i
Looking for the full command reference and detailed setup guides? They live inside your account. Sign in or create a free account to access them.

Common questions

Answers to the things we hear most.

Getting started
How do I run my first scan?
Create a free account in the portal, download and install the scanner on a domain-joined Windows machine, then point it at your domain with a read-only account. Your report appears in the portal in minutes. Full step-by-step setup lives in your account once you sign in.
What do I need to run a scan?
Three things: a Windows machine joined to the domain you want to assess, a standard domain account with read permissions, and network access to at least one domain controller over LDAP or LDAPS (ports 389 / 636). Most domain-joined machines already have this by default.
How long does a scan take?
Most scans finish in just a few minutes. Larger or more complex environments take a little longer, but even sizable domains typically complete well within half an hour. Once the scan uploads, your report is ready in the portal within a few minutes.
Where are the detailed setup instructions?
Detailed installation steps, the command reference, and troubleshooting guides live inside your account. Sign in to access them. This page covers the essentials to get you started.
Scanning & requirements
What permissions does the scan account need?
A standard domain user account with read access to AD objects is enough, the same access level as any domain-joined workstation. Domain Admin is not required, and we recommend against using it for the scan account.
Will the scan change anything in my environment?
No. The scan is entirely read-only. It enumerates Active Directory using standard LDAP queries and does not create, modify, or delete any objects, accounts, policies, or configurations.
Where does the scanner run, and does it install anything?
You install the scanner on one domain-joined machine you choose, and it runs from there under an account you control. Nothing is deployed to your domain controllers or across your endpoints.
Can I schedule recurring scans?
Yes. On paid plans you can install the scanner as a scheduled Windows service to run recurring scans automatically and track your posture over time. The free scan is on-demand.
Will it trigger our security monitoring?
The scan uses standard LDAP enumeration consistent with normal administrative tools like ADUC and the PowerShell AD module. It may appear in AD audit logs as LDAP queries from the account you designate. It does not perform any exploitation, credential attacks, or lateral movement.
Security & data
Does my data leave my environment?
The scanner transmits enumerated AD metadata to generate your report: object attributes, relationship data, and configuration state. Raw credential material, password hashes, Kerberos tickets, and NTDS data are never collected. Full details are in our Privacy Policy.
What happens to my scan data?
On the free plan we keep your latest scan. Standard and above retain your scan history so you can track posture over time. You can export or delete your data at any time, and when you close your account your scan data is removed within 30 days.
Plans & licensing
What's included in the free scan?
The complete assessment for one domain: every finding with attacker insight and remediation, your risk posture score, quick wins, and MITRE and compliance mappings. It keeps your latest scan only. Paid plans add scheduled scans, report history, trend tracking, exports, and more. See the pricing page for a full comparison.
Can I run it on a client or customer environment?
The free and Standard plans are for internal use on environments you own or have explicit written authorization to assess. Commercial use, running assessments on client environments, requires an Auditor plan or above.
Do you offer help with remediation?
Yes. Our Breach Point practitioners offer both advisory and hands-on remediation assistance, billed hourly at a rate based on your plan. Learn more on the remediation assistance page.
Do you offer monthly billing?
All plans are annual. Annual billing is standard for security software and lets us keep pricing lower than monthly equivalents would allow. If monthly matters for your situation, contact us.

Still have a question?

We're a small team and we read every message.

Can't find what you're looking for? Reach out and you'll hear back from a practitioner, not a support bot.