Guidance for the work your team actually does.
Follow EVADA's real workflow from authorized scope to controlled scans, normalized Findings, immutable reports and attributable access.
Start with scope. Finish with evidence.
Each guide maps to a released EVADA capability, so the advice matches the product your team can use today.
- 01Authorize
Create an Asset and prove control of the target.
- 02Assess
Run a compatible Web or TLS scanner in the background.
- 03Triage
Review deduplicated Findings and remediation evidence.
- 04Report
Issue an immutable PDF and JSON evidence package.
Find the next safe step
Search by task or narrow the library to setup, daily operations or governance.
8 guides shown
Authorize an Asset Create a controlled target and prove ownership before any scanner can reach it. Open guide
- Add the website, API endpoint or hostname to the current workspace.
- Choose DNS TXT or HTTP file verification and publish the exact challenge value.
- Verify ownership. EVADA keeps scanning blocked until the proof succeeds.
OutcomeA verified Asset that is eligible for compatible scanners.
Run a Web App baseline Assess an authorized web application with the released passive OWASP ZAP workflow. Open guide
- Select Web App Scanner and a compatible verified Asset.
- Submit the baseline job. Queue limits and duplicate protection are applied first.
- Track the lifecycle while the isolated worker scans, uploads and normalizes evidence.
OutcomeStored raw evidence and normalized Findings for the selected Asset.
Review TLS and certificate posture Inspect certificate, protocol and cipher configuration without running a web-content test. Open guide
- Select TLS/SSL Scanner and an active hostname or web Asset.
- Queue the assessment against the Asset snapshot approved by the workspace.
- Review certificate and transport Findings after normalization completes.
OutcomeTransport-security evidence and deduplicated TLS Findings.
Triage normalized Findings Move from raw scanner output to a deduplicated, tenant-scoped remediation queue. Open guide
- Filter Findings by Asset, severity, scanner and workflow state.
- Open a Finding to review affected locations, observations and remediation guidance.
- Assign a decision, record the change and retest after remediation.
OutcomeClear ownership, workflow status and evidence for each security issue.
Issue an immutable VAPT report Freeze the current Asset and Finding state into a controlled evidence package. Open guide
- Choose the report scope from the current tenant Assets and Findings.
- Create the snapshot before the report worker renders any artifact.
- Prepare short-lived download links and retain the audit trail for every download.
OutcomePDF and JSON artifacts backed by an immutable snapshot hash.
Manage Team access Give each member only the modules and actions needed inside one organization. Open guide
- Add the member and select Viewer, Admin or a Custom module profile.
- The member completes secure account setup without exposing a password to the owner.
- EVADA checks membership and permissions before resolving the tenant database.
OutcomeAn active membership with a defined role, scope and access duration.
Understand scan queue controls See how fair admission, member limits and active duplicate locks protect capacity. Open guide
- Each request is checked against member, tenant and platform outstanding limits.
- One active scan is allowed for each tenant, Asset and scanner-type combination.
- Leases, timeout, cancellation and reconciliation release capacity when work ends.
OutcomePredictable scanner execution without duplicate work or cross-tenant access.
Follow the workspace audit trail Trace identity, Asset, scan, Finding, report and Team events from one ledger. Open guide
- Use Activity Log filters to locate the module, actor, object or event.
- Review security access events separately from operational tenant events.
- Use event identifiers and timestamps when investigating or exporting evidence.
OutcomeAn attributable history of user actions and background operations.
Try a broader term or select All.
Operational evidence is not a certification claim.
EVADA helps teams collect attributable Assets, scan evidence, Findings, reports and activity records. Those records can support control reviews and audit preparation.
Certification, legal interpretation and regulatory sign-off remain with your qualified assessor, legal adviser or auditor.
Bring your own security process.
We will map EVADA's released workflow to your authorized Assets, team controls and evidence needs.