Trust

Your findings never
leave your walls.

Penetration test findings are among the most sensitive documents an organization owns. This page answers the questions security and procurement teams ask us, starting with the most important one: what can leave your network.

01 / Data sovereignty

What can leave.
Precisely.

Neuron does not claim that a connected server makes no network traffic at all. It makes a stronger claim: none of the traffic it can make carries the contents of your engagements. Every outbound capability ships switched off, and each one asks an administrator for confirmation before it connects.

Neuron collects no usage analytics, telemetry or crash reports, and validates its license on the server with no heartbeat.

Every connection
Every outbound connection Neuron can make
ConnectionWhenWhat it carriesAir-gapped
Engagement dataNeverFindings, evidence, credentials, client details, AI prompts and output stay in your database.Never
License activationOnce, when an administrator activates onlineLicense serial and a hardware fingerprintOne file carried out by hand
Update checkOnly when an administrator runs oneCurrent version and platformDoes not happen
Software and model downloadsWhen an administrator starts oneNothing is uploaded; the file comes inCarried in on media
Public security feedsOnly if an administrator enables themA request for public vulnerability and technique dataLeft off
Your own integrationsIf you configure themTraffic to systems you operate: email, SSO, ServiceNowFlagged while Offline Mode is on
02 / AI governance

AI with an owner.
Always a person.

Neuron AI is an optional module, licensed and deployed separately from Core. Our Responsible AI Policy sets out where it runs, what data it touches, who reviews its output and who is responsible for what.

The policy

On-premises inference

Models run on your hardware. Prompts and completions never leave your trust boundary, and there is no hosted AI provider or fallback behind Neuron.

Vendor-supplied, signed models

Models come from PenTest.WS through the signed update channel. Customers do not load arbitrary models, and a model without the official marker is refused.

Human approval is structural

AI output lands in the same fields and the same QA workflow as human writing. Nothing it drafts reaches a client without reviewer approval.

No training on your data

We do not collect, transmit or train on prompts or completions, and the product has no facility to do so. The AI module emits no telemetry.

Known limits, stated

Models can be wrong, generic or out of date. The policy names those failure modes and makes the operator the author of record.

Clear responsibilities

A vendor and customer responsibility matrix covers models, hardware, review, access and defect handling.

03 / Product security

Built like the people
who will test it.

Our customers break into systems for a living. These are the controls they find when they look.

Controls
Identity

SSO, MFA and no auto-provisioning

SAML 2.0 with signed assertions or OIDC with PKCE. MFA with backup codes. An administrator creates every account before its first sign-in.

Break-glass

A superadmin that stays out of the work

The superadmin signs in with a local password only, cannot use SSO, cannot reach day-to-day work and cannot manage API tokens.

Separation of duties

Nobody approves their own work

Reviewer and approver must be different people, and a submitter can never be forwarded back as their own reviewer.

Encryption

Your key, on your server

Sensitive fields are encrypted at rest with AES-256-GCM under a key held on your server. Components talk over TLS, verified by pinning or your internal CA.

Portal isolation

A DMZ service with nothing to steal

The Delivery Portal holds no database and no encryption keys. Unreleased findings return not found, and lockouts never confirm that an address exists.

Share links

Re-checked on every request

IP allowlists are enforced on every page load, data endpoints are rate limited to 60 requests a minute per IP, and session cookies are HMAC-signed.

Supply chain

Signed releases

Every download ships with a SHA256SUMS file and a signature against the Neuron release key. The AI host installs only signed builds.

Audit

Who did what, and when

Admin, portal and AI activity logs, attributed track changes, per-field provenance on findings, and per-round retest audit trails.

Guardrails

Unsafe setups are called out

Neuron warns when Core listens on plain HTTP on a reachable address, and refuses to start if the clock jumps backwards or the database was upgraded by a newer version.

04 / Company security

Documented,
not improvised.

How we operate
Policies
Information Security Policy, Information Security Standards, Enterprise Risk Management, Asset Management, Acceptable Use, Human Resource Security, Cloud Security, Encryption Key Management Standard, Incident Response Plan, Business Continuity and Disaster Recovery, and AI Governance.
Approach
Informed by ISO/IEC 27001 and 27002 and the NIST Cybersecurity Framework. This describes our approach, not a certification.
Your data
Out of scope by design. Neuron runs on your infrastructure, and we hold none of your engagement data.
On request
The Neuron Technical Whitepaper, our policy set, completed security questionnaires and an IPv6 capability attestation for PenTest.WS Pro, shared during procurement. Ask our team.
05 / Responsible disclosure

Found something?
Tell us first.

Report suspected vulnerabilities in PenTest.WS products or websites to security@pentestws.com. Include enough detail for us to reproduce the issue.

We will acknowledge your report, keep you updated while we investigate, and credit you if you would like. Please give us a reasonable time to fix the issue before disclosing it publicly, and do not access, change or delete data that is not yours.

We will not pursue legal action against research carried out in good faith under this policy.

Our contact details are also published in security.txt.

06 / Procurement

Questions we
get asked.

FAQ
Do you have sub-processors for our engagement data?

No. Neuron runs on your infrastructure and engagement data never reaches us, so no third party processes it on our behalf.

Can we verify that nothing leaves?

Yes. Put the server behind a firewall that denies outbound traffic and watch the logs. Neuron keeps working, including its AI, and there is nothing for it to send.

Which certifications do you hold?

None. Neuron runs inside your boundary and we never hold your data, so the controls that matter sit in the product and in your environment. Our security policies are informed by ISO/IEC 27001 and 27002 and the NIST Cybersecurity Framework, and they are available during procurement.

What happens to our deployment if something happens to PenTest.WS?

Neuron validates its license locally and needs no connection to us to keep running for the license term, and your data is already in your own database. There is no hosted service to switch off.

How do you handle security defects in Neuron?

Report them to security@pentestws.com. We investigate, fix and ship the fix as a signed release, and customers apply it through their normal update path, including air-gapped installs.

Can you fill in our security questionnaire?

Yes. We have completed standard questionnaires, including the Shared Assessments SIG Lite, and can answer yours during procurement.

Questions from your security team?

We are happy to walk your security and procurement teams through deployment, data handling and our controls.