code

FAQ

Find answers to common questions about our penetration testing process, methodology, and safety measures.
For anything not covered here, our team is happy to provide more details.

Why Do We Ask for a Temporary WAF Exclusion?
How is WAF Exclusion Kept Safe?
Why Fix the Application Code Instead of Relying on the WAF?
Why is a Rate Limit Issue Considered a Security Finding if it is Handled by the WAF?
Why Provide API Docs or Postman Collections?
In What Approaches Do We Perform the Test?
Which Environments Do We Test?
Why Avoid Changes During Testing?