Security and trust
What Cyber Health Score does not do
Product boundaries and claims the platform does not make.
- Audience
- All users
- Plan availability
- All plans
- Last reviewed
Clear product boundaries support trust. This page explains what Cyber Health Score should not be presented as doing.
Not a penetration-testing service
Cyber Health Score supports safe external posture assessment. It is not a red-team platform, exploit framework, or guarantee that every vulnerability will be found.
Cyber Health Score is not a penetration-testing service.
Not compliance certification
Reports, Compliance Evidence, and Configurable Reports support audit preparation and stakeholder review. They do not constitute ISO certification, PCI DSS approval, SOC 2 attestation, or a guaranteed audit pass.
Not unrestricted support access
Support access is tenant-consented, scoped, time-bound, revocable, and audited. It is not unlimited internal access without customer visibility.
Not proof of live payments in every environment
Billing uses Stripe. The current deployment may run in test mode until live mode is enabled. Treat live commercial payment claims as environment-specific unless separately verified.
Not a promise of zero risk
No security product can promise zero false positives, zero false negatives, zero breaches, or zero downtime. Cyber Health Score improves visibility, prioritisation, and communication around external posture.
Practical takeaway
The most credible description is a platform for verified external posture visibility, prioritised findings, and stakeholder-ready evidence within clear product boundaries.
Related documentation
Related documentation
Return to the documentation home to browse all topics.
Back to documentation