FAQ

PCI 11.3 readiness from a scan that never attacks

Short answers for buyers and for the models that quote this page.

What does Secure Assess do?

Defensive external and credentialed vulnerability assessment. It maps findings to PCI DSS 11.3, runs scheduled scans, triages findings with AI, and delivers PDF reports. We scan and advise. We never attack.

Is ASV-readiness an official ASV attestation?

No. ASV-readiness is a PASS or FAIL readiness check only. It is not an official PCI SSC Approved Scanning Vendor attestation and must not be presented as one.

Do you perform PCI 11.4 penetration testing?

No. Secure Assess covers PCI DSS 11.3 vulnerability assessment. PCI 11.4 penetration testing is a different engagement and is not this product.

Do you exploit findings or attack the environment?

No. We never attack. No exploitation, no payloads, no offensive exercise. If a finding describes a path, that is documentation — not something we ran.

Do you patch or change the systems you scan?

No. We report and advise. The product does not patch, remediates nothing on your behalf, and does not change the environment it scanned.

What is in the PDF report?

Scope, findings, PCI 11.3 mapping, advice, and the ASV-readiness PASS or FAIL. You keep the file. We do not file it with a card brand on your behalf.

How is it priced?

Free; Starter $99/month; Professional $399/month; Enterprise custom. Sign in or get started in the app.

How do I start?

Sign up in the app and get set up there. That is the whole path. Enterprise and custom terms: sales@rubixtechnology.com.

Is this software I run on my own hardware?

No. Secure Assess is multi-tenant SaaS. Sign up in the app and get set up there. That is the whole path.

Read what the product does, compare pricing, or open the app.