Ask Secure Assess a question. Answers come from this site's docs only. I will cite a page. I will not invent a product claim.
Vulnerability assessment that ships
Authorize the scope. Run a defensive external and credentialed assessment. Review ranked findings, a PDF report with PCI DSS 11.3 mapping, and an ASV-readiness PASS or FAIL. We scan and advise. We never attack.
The Secure Assess workflow
- Sign up in the app and add a target you own.
- Verify ownership and create an authorized scope.
- Run a defensive external scan; optionally add credentials for a credentialed pass.
- Review AI-triaged findings mapped to PCI DSS 11.3.
- Download the PDF report — findings, 11.3 mapping, advice, and ASV-readiness PASS or FAIL.
- Schedule the same scope again so results stay comparable over time.
What you get
- Defensive external vulnerability assessment of hosts and services you authorize.
- Credentialed assessment when you supply credentials (read-only use).
- Scheduled scans on the cadence you set.
- AI-triaged finding list with advice — no automatic remediation.
- PDF report: scan findings + PCI 11.3 mapping + ASV-readiness PASS/FAIL.
Vulnerability assessment vs. vulnerability scanning
Vulnerability scanning is the technical pass that probes authorized systems and returns raw findings. Vulnerability assessment is the fuller workflow: scoped scan, triage, advice, written report, and — for Secure Assess — PCI DSS 11.3 mapping plus ASV-readiness PASS or FAIL.
Secure Assess includes scanning as part of 11.3-oriented assessment. Scanning alone is not penetration testing, not proof that no vulnerabilities exist, and not an official ASV attestation.
Boundaries
- PCI DSS 11.3 vulnerability assessment — yes.
- ASV-readiness PASS/FAIL — yes (readiness only; not attestation or card-brand filing).
- PCI 11.4 pen testing / exploitation — no.
- Full PCI DSS 4.0 compliance program — no.
- Complete CHD / cardholder-data inventory discovery — no.
Go deeper: PCI DSS 11.3 & ASV-readiness · PCI scan planning · pen testing vs VA · what it does · open the app.
Run a vulnerability assessment in the app
Sign up, authorize scope, and start a defensive scan. Pricing is on this site; payment is in the app.