Complete pentest reporting suite

Vuln DB, DOCX and PPTX templates, Gantt, runbooks, a client portal, and encryption the host cannot read.

Vulnerability database

Duplicate, export, and import findings.

Keep a living catalogue across engagements without losing the originals.

Custom templates

DOCX and PPTX, not only “the report”.

Attestations, executive decks, or any other deliverable your process needs.

Client interface

Clients download deliverables, send extra documentation, and review findings without a mailbox full of attachments.

Advanced collaboration

  • QA comments and real-time editing.
  • Coordinate writers, reviewers, and managers in the same finding.

API and libraries

  • A documented API, plus template documentation.
  • Client libraries handle encryption so integrations stay zero-access.

Runbooks

  • Variables system and copy-ready commands.
  • Check off what is done, justify when it is not covered.
  • Company know-how, intuitive and fast.

Secure file storage

  • Engagement files, evidence, logs, and deliverables.
  • Encrypted the same way as everything else.

Project management

  • Gantt view, assign free resources, assignable TODOs.
  • See who can take the next piece of work.

Risk scoring

  • Risk matrix, CVSS 3.1, and CVSS 4.0.
  • Score findings the way the client expects.

Optional AI reporting

  • Help with writing and formatting only if you want it.
  • Point it at your local LLM API.
  • Off by default.

Custom fields

  • PwnDoc-style customisation.
  • Shape forms and fields to the boutique, not the other way around.

Phases and retests

  • A phases approach with retests built in.
  • The engagement has a shape, not a single dump of findings.

PwnDoc alternative · Sysreptor alternative

Ready for a demo?

Discover our solution now

Contact us