> For the complete documentation index, see [llms.txt](https://docs.bountysecurity.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.bountysecurity.ai/getting-started/installation.md).

# Installation

![Extension loaded in Burp Suite](/files/8AwLD2lP0yV8TFGjy0cE)

## 📋 Prerequisites

Before installing Burp Bounty Pro, ensure you have the following:

* ✅ **Burp Suite Professional** installed on your system (Community Edition has limited scanning capabilities)
* ✅ **Java Runtime Environment (JRE)** version 14 or above

## 🔧 Installation Steps

### 1️⃣ Download the Extension

Obtain the latest version of Burp Bounty Pro from the official website at [bountysecurity.ai](https://bountysecurity.ai) or from your purchase confirmation email.

### 2️⃣ Launch Burp Suite

Open Burp Suite Professional.

### 3️⃣ Add the Extension

1. Navigate to the **Extensions** tab (formerly called "Extender")
2. Click on the **Installed** sub-tab
3. Click the **Add** button

![Add button in Extensions tab](/files/Dc1zKtNtYwvIT53r1gL9)

### 4️⃣ Configure the Extension

In the dialog that appears:

1. Select **Java** as the extension type
2. Click **Select file...** and choose the `BurpBountyPro.jar` file you downloaded
3. Click **Next** to proceed with the installation

![Add extension dialog](/files/1KDlxSFjPD8zZBNK7gyb)

### 5️⃣ Verify Installation

Ensure that:

* ✅ The extension is listed in the **Installed** extensions list with the checkbox ticked
* ✅ No errors appear in the extension output panel
* ✅ The **Burp Bounty Pro** tab appears in the main Burp Suite tab bar

![Burp Bounty Pro tab visible](/files/2fRsFsPqEeVtSdKCWf2H)

### 6️⃣ Start Using Burp Bounty Pro

Access the newly added **Burp Bounty Pro** tab in the Burp Suite interface. You're ready to begin configuring your profiles and start your security testing! 🎉

## 🚀 First Launch

When Burp Bounty Pro loads for the first time, it will:

1. 📦 **Auto-load default profiles** — 254 pre-configured scanning profiles are loaded from the bundled `BurpBountyData` directory
2. 📋 **Auto-load default rules** — 27 Smart Scan rules are loaded for automated vulnerability detection
3. 🔀 **Initialize default variables** — Global variables like `{REDIRECT_DOMAIN}` are set to their default values

A new **Burp Bounty Pro** tab will appear in the main Burp Suite interface with sub-tabs for Dashboard, Scanner, Profiles, Rules, Options, Variables, License, and About.

![First launch with default profiles](/files/z6SeEmPKpqevhKXaT8Ht)

## 🔑 License Activation

1. Navigate to the **Burp Bounty Pro** tab
2. Click the **License** sub-tab
3. Enter your license key
4. Click **Activate**

![License activation tab](/files/JCPr7VgUfWKte2TGsRrl)

## ✅ Verifying Installation

After installation, verify that:

* ✅ The **Burp Bounty Pro** tab appears in the main Burp Suite window
* ✅ The **Dashboard** sub-tab shows the scan control buttons (Pause All, Resume All, Stop, Clear Issues)
* ✅ The **Profiles** sub-tab lists loaded profiles across all three tables:
  * 🎯 **Active Profiles** — with columns: Enabled, Profile Name, Tags, Author's Twitter
  * 📨 **Passive Request Profiles** — with columns: Enabled, Profile Name, Tags, Author's Twitter
  * 📩 **Passive Response Profiles** — with columns: Enabled, Profile Name, Tags, Author's Twitter
* ✅ The **Rules** sub-tab shows the 27 default rules

## 📌 Post-Installation

After installing Burp Bounty Pro, you may want to:

* 📦 **Review Default Profiles** — Familiarize yourself with the 254 default profiles provided and adjust them to fit your testing needs. Use the tag dropdown to browse by category (XSS, SQLi, CVEs, etc.)
* 🚀 **Explore the Quick Start** — Follow the [Quick Start](/getting-started/quick-start.md) guide to run your first scan in under 5 minutes
* 🔀 **Configure Variables** — Set your `{REDIRECT_DOMAIN}` and `{ATTACKER_DOMAIN}` in the Variables tab
* 🔄 **Check for Updates** — Check for updates regularly to ensure you have the latest features and fixes

## 🔄 Updating

Burp Bounty Pro has a built-in update checker that detects new versions of both the extension and the profiles.

### Check For Updates

1. Go to the **Burp Bounty Pro** tab > **About** sub-tab
2. Click the **Check For Updates** button
3. The extension will check for:
   * 🆕 **New versions of Burp Bounty Pro** — If a new version is available, you'll be notified and can download it
   * 📦 **New versions of the profiles** — Updated and new scanning profiles are downloaded and installed automatically

![About tab with Check For Updates](/files/HADXVO6i7HV9mhS544ex)

> 💡 **Tip:** Check for updates regularly to get the latest vulnerability detection profiles and bug fixes.

> 📝 **Note:** Your existing profiles, rules, and settings are preserved across updates.

## 🔗 Resources

| Resource           | Link                                                                               |
| ------------------ | ---------------------------------------------------------------------------------- |
| 📖 Documentation   | [burpbounty.bountysecurity.ai](https://burpbounty.bountysecurity.ai/burp-bounty/)  |
| 🎥 Video Tutorials | [YouTube Channel](https://www.youtube.com/channel/UCSq4R2o9_nGIMHWZ4H98GkQ/videos) |
| 🌐 Main Website    | [bountysecurity.ai](https://bountysecurity.ai)                                     |
| 🐦 Twitter         | [@BountySecurity](https://x.com/BountySecurity)                                    |
| 📧 Support         | <hello@bountysecurity.ai>                                                          |

## ❓ Need Help?

If you encounter any issues during the installation or have questions about using Burp Bounty Pro, please:

* 📖 Check the [FAQ](/appendix/faq.md) for common solutions
* 📧 Contact our support team at **<hello@bountysecurity.ai>**
