Monitor
Run the approved baseline website vulnerability monitoring activity for the included website allowance.
Guardian Website Vulnerability Monitoring provides baseline vulnerability and exposure visibility for the approved websites included in the customer package schedule, with customer-safe findings, actions and reporting through Guardian.
Guardian Core includes website vulnerability monitoring for the approved websites and monitoring cadence recorded in the package schedule.
The service identifies supported website exposure and vulnerability findings, presents them safely through Guardian, and connects material issues to risks, owners, due dates and remediation follow-up.
Run the approved baseline website vulnerability monitoring activity for the included website allowance.
Present customer-safe findings with severity, status and practical remediation context.
Connect material findings to Guardian risks, All Actions, owners, due dates and evidence of resolution.
The package schedule identifies the public websites included in the Guardian Core monitoring allowance.
Supported website vulnerability and exposure checks are performed at the approved cadence.
Findings are normalised and presented without exposing raw scanner payloads, credentials or internal implementation detail.
Material website findings can become governed risks and accountable remediation actions.
Approved evidence and status support remediation review rather than assuming closure.
Website vulnerability posture contributes to the standard Guardian evidence and reporting experience.
Guardian Website Vulnerability Monitoring is the baseline Core inclusion. Katana is a separately entitled add-on for deeper active website and API security testing.
Katana can add approved scheduled or on-demand assessments, authenticated or custom assessment profiles, richer evidence, included rescans and deeper testing workflows for approved targets.
Manual penetration testing remains separately scoped unless the applicable proposal expressly includes it.
We will record the Guardian Core website allowance and monitoring cadence, then add Katana only where the organisation needs deeper active website or API security testing.