Included in Guardian Core

Know when an approved public website has a vulnerability.

Guardian Website Vulnerability Monitoring provides baseline vulnerability and exposure visibility for the approved websites included in the customer package schedule, with customer-safe findings, actions and reporting through Guardian.

Included in Guardian CoreApproved website allowanceCustomer-safe findingsRisk and action tracking
Core website coverage

Baseline website vulnerability visibility without requiring the Katana add-on.

Guardian Core includes website vulnerability monitoring for the approved websites and monitoring cadence recorded in the package schedule.

The service identifies supported website exposure and vulnerability findings, presents them safely through Guardian, and connects material issues to risks, owners, due dates and remediation follow-up.

01

Monitor

Run the approved baseline website vulnerability monitoring activity for the included website allowance.

02

Prioritise

Present customer-safe findings with severity, status and practical remediation context.

03

Track

Connect material findings to Guardian risks, All Actions, owners, due dates and evidence of resolution.

What Core includes

Website vulnerability monitoring connected to accountable action.

WS

Approved website inventory

The package schedule identifies the public websites included in the Guardian Core monitoring allowance.

VM

Baseline vulnerability monitoring

Supported website vulnerability and exposure checks are performed at the approved cadence.

CF

Customer-safe findings

Findings are normalised and presented without exposing raw scanner payloads, credentials or internal implementation detail.

RA

Risk and All Actions

Material website findings can become governed risks and accountable remediation actions.

EV

Evidence and resolution

Approved evidence and status support remediation review rather than assuming closure.

RP

Standard reporting

Website vulnerability posture contributes to the standard Guardian evidence and reporting experience.

Katana remains an add-on

Katana adds deeper active website and API security testing.

Guardian Website Vulnerability Monitoring is the baseline Core inclusion. Katana is a separately entitled add-on for deeper active website and API security testing.

Katana can add approved scheduled or on-demand assessments, authenticated or custom assessment profiles, richer evidence, included rescans and deeper testing workflows for approved targets.

Manual penetration testing remains separately scoped unless the applicable proposal expressly includes it.

Core monitoring or Katana testing

Confirm the included websites and whether deeper active testing is required.

We will record the Guardian Core website allowance and monitoring cadence, then add Katana only where the organisation needs deeper active website or API security testing.

Guardian Website Vulnerability Monitoring | Damocles Security