Beacon
Beacon is a read-only network discovery and audit tool for IT consultants, MSP field techs and auditors. It sweeps the real subnet from the interface netmask, folds in the kernel neighbour table so firewalled and silent devices cannot hide from the device count, and browses Bonjour to name what it finds. Tap a host and Beacon audits it: TLS certificate expiry and chain, SSH hardening with weak key exchange and cipher detection, HTTP security headers, SNMP default communities, exposed service risk and default-credential fingerprints. It never tries a password. Every finding cites the evidence line it came from, because an auditor will not sign a black box. A topology map puts the gateway at the centre with every host on a spoke, and one tap produces a branded PDF with inventory, topology and findings ranked by severity. Save a scan and the next visit shows exactly what changed: new hosts, hosts gone, ports opened and closed. Everything is read-only and stays on the device, with no account and nothing sent to any cloud, which for an industrial or client network is the point.