Authorized targets only
Pentoma never tests assets it has not been authorized to test. Every engagement requires a signed scope statement that lists assets, surfaces, environments, and roles.
Pentoma combines AI-assisted testing with human validation, scoped authorization, non-destructive evidence collection, and audit-ready reporting.
Controls
These controls explain how Pentoma earns trust: bounded targets, safe validation, human sign-off, and evidence that remains auditable.
Assessments run only against verified targets, connected repositories, or registered AI endpoints that are explicitly approved for the engagement.
Pentoma validates exploitability with controlled replay, test accounts, safe payloads, and customer-approved boundaries instead of disruptive production actions.
AI can discover and draft candidate findings, but customer-facing confirmation requires reviewer validation of scope, impact, severity, and remediation quality.
Assessments need an operator-visible stop path so scoped testing can be paused or cancelled if customer risk, availability, or scope changes.
Credentials, source context, prompts, request evidence, and report artifacts are treated as scoped engagement material and minimized to what the assessment needs.
Finding status, false-positive dismissal, remediation state, retest results, and report exports are retained as evidence for engineering and compliance review.
Engagement scope policy
Scope is documented, signed, and versioned before any traffic is generated. Discoveries outside that boundary are reported, not pursued.
Pentoma never tests assets it has not been authorized to test. Every engagement requires a signed scope statement that lists assets, surfaces, environments, and roles.
Issues discovered outside the agreed scope are documented separately and are not exploited beyond what is required to confirm they exist.
Adding or removing a target during an active engagement requires an updated written scope before testing continues on the new surface.
Production-safe testing
Pentoma is built to validate impact without causing it. Anything that could disrupt production is gated on written approval, environment selection, and customer-controlled stop conditions.
Default mode is non-destructive: no data deletion, no privilege escalation beyond what is needed to confirm an authorization issue, and no denial-of-service testing.
Destructive testing only happens with explicit written approval and against a designated environment agreed in advance.
Rate limits and time windows are configured per engagement to match maintenance schedules and on-call coverage.
The customer can pause or stop an active engagement at any time. Operators have a visible stop path during the run.
Authentication and credentials
Credentials provided for an engagement are treated as sensitive material with a clear lifecycle: encrypted while in use, scoped to the surface being tested, and removed when the engagement closes.
Test credentials provided by the customer are stored encrypted at rest and removed at engagement close.
Pentoma does not reuse credentials across engagements. Each engagement is provisioned with its own test accounts and secrets.
Credentials are scoped to the test surface only and are not used to access systems outside the agreed scope.
Evidence and data handling
Findings, captures, and supporting context live in per-engagement storage, are minimized to what the assessment needs, and follow a clear retention and deletion path.
Findings, request/response captures, source paths, and prompt transcripts are stored in scoped per-engagement storage.
Customer data captured incidentally during testing is minimized: redacted before review where possible, and removed when not needed for evidence.
Standard retention is the duration of the engagement plus the retest window. Longer retention is opt-in by the customer for audit purposes.
Customers can request deletion of their evidence after delivery. Removal is confirmed in writing.
AI usage transparency
Pentoma is explicit about where AI helps and where it does not decide. Customer material stays out of model training pipelines.
Pentoma uses leading commercial AI models for discovery and reasoning during assessments.
AI outputs are never accepted as findings without deterministic replay and human validation sign-off.
Customer-provided source code, configurations, and credentials are not used to train or fine-tune any third-party model. Provider terms used by Pentoma prohibit training on submitted data.
Audit logs
Customer admins should be able to reconstruct what happened during an engagement without filing a request.
Pentoma logs scope changes, evidence access, report exports, and engagement lifecycle events.
Customer admins can review and export audit log entries for their own engagements.
Insurance and liability
Insurance is part of how Pentoma takes responsibility for the work. The public commitment is deliberately general; coverage detail is shared with procurement under NDA.
Pentoma maintains commercial insurance appropriate for application security testing. Coverage specifics are shared under NDA during procurement.
Incident escalation
Two situations always trigger direct contact with the customer security contact: active exploitation discovered in scope, and any unintended impact caused by testing.
If Pentoma discovers a critical issue actively being exploited, the customer security contact is paged according to the agreed engagement runbook.
If an engagement causes unintended impact, Pentoma stops, notifies the customer security contact, and works the incident jointly until resolution.
Disclosure and operations
Pentoma should make it easy for customers and researchers to route security issues, scope questions, urgent pause requests, and report corrections.
Include affected surface, reproduction steps, observed impact, and any relevant evidence. Do not test outside approved scope.