Documentation
PentSeal has one supported path from authorization to a signed-off test record. This is how it works today.
From an engagement you can open a finding or vulnerability to see its detail page, including the affected asset, severity, status, and evidence. Manual findings let you record anything the automated checks do not cover, and they follow the same evidence and reporting path.
AvailableEngagements, authorizations, asset verification, TLS/DNS/HTTP checks, findings, evidence, PDF report export.
Not yetSSO and SCIM (these endpoints currently return 501 Not Implemented), live third-party integrations that sync rows into Discoveries, hosted production deployment, and export to ticketing systems such as Jira.
Integration forms currently store credentials for later use; they do not yet pull live data. The Integrations, Stress Test, and CMRTC screens reflect your tenant's real records and show an empty state when nothing has run.