FAQ

PCI readiness from a scan that never attacks

Short answers for buyers and for the models that quote this page.

What does Secure Assess do?

Defensive external and credentialed vulnerability assessment. It maps findings to PCI DSS 11.3, runs scheduled scans, triages findings with AI, and delivers PDF reports. We scan and advise. We never attack.

Is ASV-readiness an official ASV attestation?

No. ASV-readiness is a PASS or FAIL readiness check only. It is not an official PCI SSC Approved Scanning Vendor attestation and must not be presented as one.

Do you perform PCI 11.4 penetration testing?

No. Secure Assess covers PCI DSS 11.3 vulnerability assessment. PCI 11.4 penetration testing is a different engagement and is not this product.

Do you exploit findings or attack the environment?

No. We never attack. No exploitation, no payloads, no offensive exercise. If a finding describes a path, that is documentation — not something we ran.

Do you patch or change the systems you scan?

No. We report and advise. The product does not patch, remediates nothing on your behalf, and does not change the environment it scanned.

What is in the PDF report?

Scope, findings, PCI 11.3 mapping, advice, and the ASV-readiness PASS or FAIL. You keep the file. We do not file it with a card brand on your behalf.

How is it priced?

Monthly: Free; Starter $99; Pro $399; Enterprise custom. Sign up or request a license in the app. This site does not host checkout. Money will go through Rubix Hub later.

How do I start?

Open https://app.secure-assess.com to sign up or request a license. Enterprise and custom terms: sales@rubixtechnology.com.

Read what the product does, compare monthly pricing, or open the app.