
Local-network security auditing with EOL, CVE, device identity, and HTML reports
Network security auditing for humans — powered by nmap, built for everyone.
Website: sunsetscan.com
SunsetScan is a local-network security auditing tool for home network owners and IT staff who want the depth of nmap without learning nmap syntax. Point it at your network and it finds every active device, fingerprints running software, checks against known vulnerability databases and end-of-life records, probes web interfaces for common weaknesses, optionally performs a lockout-safe factory-default credential audit, and produces a clean HTML report with plain-English explanations and numbered steps to fix each finding. It is entirely read-only and non-destructive — nothing on your network is ever modified.
-i menu retains scan results and includes findings, risk scores, hardware lifecycle evidence, and device identities when exporting a full assessment.See the v2.2.1 release notes for validation results and downloads. The hardware database is licensed separately under CC BY-NC 4.0.
See the v2.2.0 release notes for the database build and validation details.
| Platform | Support Level | Notes |
|---|---|---|
| Linux (Debian, Ubuntu, Fedora, Arch, etc.) | Full support | Best experience — all features work natively |
| WSL2 (Windows Subsystem for Linux) | Full support | Recommended way to run on Windows machines |
| macOS | Partial | Core scanning works; some features (ARP, passive capture) may require extra setup |
| Windows (native CMD/PowerShell) | Not supported | Missing raw sockets, os.geteuid(), /proc, ip route, and termios — use WSL2 instead |
Why Linux? SunsetScan relies on raw sockets (ARP scanning, passive packet capture), Linux-specific APIs (
/proc,ip route), and privilege checks (os.geteuid()) that are not available on native Windows. WSL2 provides a full Linux kernel and is the recommended path for Windows users.
SunsetScan ships with an installer that takes care of system tools (nmap, masscan, git, python3-venv), creates a project-local Python virtual environment, and installs all Python dependencies inside it. You will never be asked to pip install anything as root — that's important on modern Debian/Pi OS, see Why a venv? below.
Debian, Ubuntu, Raspberry Pi OS (Bookworm and newer), Linux Mint, Pop!_OS.
Fedora, RHEL, CentOS, Rocky, Alma, Arch, Manjaro, openSUSE, macOS.
Recommended for Debian, Ubuntu, Raspberry Pi OS, Linux Mint, and Pop!_OS:
curl -fLO https://github.com/NoCoderRandom/sunsetscan/releases/download/v2.2.1/sunsetscan_2.2.1-1_all.deb
curl -fLO https://github.com/NoCoderRandom/sunsetscan/releases/download/v2.2.1/sunsetscan_2.2.1-1_all.deb.sha256
sha256sum -c sunsetscan_2.2.1-1_all.deb.sha256
sudo apt install ./sunsetscan_2.2.1-1_all.deb
sunsetscan --version
The package contains the application and hardware lifecycle data. Its installer sets up a Python virtual environment and downloads Python dependencies on first install, so installation needs internet access. For Fedora, Arch, other Linux distributions, and WSL2, use the source archive or clone the repository and run ./install.sh.
Clones the repo into ~/sunsetscan and runs the installer:
curl -fsSL https://raw.githubusercontent.com/NoCoderRandom/sunsetscan/main/bootstrap.sh | bash
Want it somewhere else? Set INSTALL_DIR:
INSTALL_DIR=/opt/sunsetscan curl -fsSL https://raw.githubusercontent.com/NoCoderRandom/sunsetscan/main/bootstrap.sh | bash
A note on
curl | bash: it's convenient but it does mean running a script you haven't read. If you'd rather inspect first, use option 3 or 4.
git clone https://github.com/NoCoderRandom/sunsetscan.git
cd sunsetscan
./install.sh
sudo apt install -y nmap masscan git python3 python3-venv python3-pip libpcap-dev build-essential avahi-utils
git clone https://github.com/NoCoderRandom/sunsetscan.git && cd sunsetscan
python3 -m venv venv && ./venv/bin/pip install -r requirements.txt
./sunsetscan --version
(Substitute your distro's package manager for apt — dnf, pacman, zypper, or brew. The avahi package is avahi-tools on Fedora/RHEL, avahi on Arch, avahi-utils on openSUSE, and not needed on macOS.)
sudo sunsetscan --setup # download EOL/CVE/credential databases (once)
sudo sunsetscan --instant # ARP-only inventory of your local subnet
sudo sunsetscan --full-assessment --target 192.168.1.0/24
The sunsetscan command is available after installing the .deb. If you cloned the repository, use ./sunsetscan instead. The launcher activates its virtual environment automatically. The .deb installs under root-owned /opt/sunsetscan, so use sudo sunsetscan for scans and data updates. In a clone, run --setup, --download, and --update-cache as your normal user so cache files stay writable; use sudo only for scans that need raw sockets.
| Flag | Effect |
|---|---|
| (no flags) | Default install: system packages + venv + Python deps + self-test |
--force | Delete and rebuild the venv from scratch (use after upgrading Python) |
--symlink | Also install /usr/local/bin/sunsetscan so you can run sunsetscan from anywhere |
--no-system | Skip the apt/dnf/etc step (use if your system tools are already installed) |
--help | Show all options |