Sectigo HackerGuardian PCI ASV Scanning
Formerly Comodo HackerGuardian
Scan your public IP addresses, identify vulnerabilities and prepare ASV reports for your acquiring bank. Standard and Enterprise include unlimited scans and rescans.
ASV means Approved Scanning Vendor. Final reports depend on successful scanning and completion of the required review.
Standard: £67.91 / year excl. VAT · 5 public IP addresses
Scanning by Sectigo Ltd, a PCI SSC Approved Scanning Vendor. Sold by LeaderSSL.
Who needs external PCI scanning
HackerGuardian helps merchants and service providers meet the external vulnerability-scanning requirements that apply to their payment environment. Outsourcing payment processing does not automatically remove the need for ASV scanning. Confirm your scan scope and validation requirements with your acquiring bank or assessor. A passing ASV scan covers the assessed external scope; full PCI DSS compliance also requires meeting the other applicable requirements.
External scanning by a PCI SSC Approved Scanning Vendor
On-demand and scheduled scans
Vulnerability findings and remediation guidance
Plans with 5 or 20 included public IP addresses
LeaderTelecom is an Interested Party of the CA/Browser Forum.
Compare PCI scanning plans
Standard
HackerGuardian PCI Scan Control Center
For scopes with up to 5 included public IP addresses
£67.91 / year
- 5 included public IP addresses
- Unlimited scans and rescans
- ASV reporting following the required review
- Vulnerability findings and remediation guidance
Total for 1 year £67.91 excl. VAT
Choose StandardEnterprise
HackerGuardian PCI Scan Control Center Enterprise
For larger scopes, with up to 20 included public IP addresses
£206.68 / year
- 20 included public IP addresses
- Unlimited scans and rescans
- ASV reporting following the required review
- Vulnerability findings and remediation guidance
Total for 1 year £206.68 excl. VAT
Choose EnterpriseHackerProof
HackerProof Trust Mark incl. Daily Vulnerability Scanning
£467.48 / year
- 20 IP-addresses
- unlimited PCI Scans Per Quarter
- Daily Website Vulnerability Scans
- HackerProof Trust Mark
- ASV Scan Report Included
Total for 1 year £467.48 excl. VAT
Buy nowSupport for your PCI scanning
LeaderSSL handles your order, billing, additional IP addresses and renewals. Sectigo, as the Approved Scanning Vendor, performs the scans and the required report review. Your administrator or service provider implements any fixes.
- Email info@leaderssl.com
- Phone +31207640722
- Hours Monday — Friday: 9:00 - 18:00 CET time
- Language English
What each plan includes
| Features | Standard | Enterprise | HackerProof Trust Mark |
|---|---|---|---|
| Included public IP addresses | 5 | 20 | 20 |
| PCI Scans Per Quarter | Unlimited | Unlimited | Unlimited |
| ASV Scan Report Included | Included | Included | Included |
| Live Support | Included | Included | Included |
| Daily Website Vulnerability Scans | Not included | Not included | 1 Domain |
| HackerProof Trust Mark | Not included | Not included | 1 Domain |
|
Selected term: 1 year Choose Standard |
Selected term: 1 year Choose Enterprise |
Selected term: 1 year Buy now |
Scroll to compare plans
Your administrator or service provider implements the fixes. The scanning service supplies findings and remediation guidance.
Need more public IP addresses? Additional IPs can be added to a licence after purchase; contact us to arrange them.
A passing ASV scan report documents the external scanning results for your assessed scope. Full PCI DSS compliance also requires meeting the other applicable requirements and completing the relevant validation documents.
How HackerGuardian works
Five steps from purchase to the documents your acquiring bank asks for.
-
Activate your account
Follow the activation instructions provided after purchase.
-
Add your scan targets
Configure the public IP addresses and relevant domains within your authorized scope.
-
Run a scan
Start a scan or schedule it for an appropriate time.
-
Resolve findings and rescan
Review the guidance, arrange fixes and submit potential false positives through the supported process.
-
Obtain and submit your report
Complete the required attestation review and provide the resulting documents to your acquiring bank as required.
PCI scanning FAQs
ASV — Approved Scanning Vendor. SAQ — Self-Assessment Questionnaire.
Do I need an ASV scan if a third party processes my payments?
Outsourcing payment processing does not automatically remove the scanning requirement. PCI SSC states that SAQ A includes external ASV scanning requirements for merchant e-commerce webpages that redirect customers to a third-party payment provider or embed its payment iframe. Confirm your assessment scope and reporting requirements with your acquiring bank or assessor.
Does a passing scan mean my business is fully PCI DSS compliant?
A passing ASV scan addresses the external scanning requirement for the assessed scope. Full PCI DSS compliance also depends on the other applicable requirements and validation documents.
Can HackerGuardian scan private IP addresses or my local network?
This service scans publicly accessible targets. The standard PCI scanning licenses do not support private or internal IP addresses, or LAN scanning.
What happens if my scan fails?
Review the findings and remediation guidance, arrange the required fixes, and run another scan. Potential false positives can be submitted for review through the supported process. A passing result cannot be guaranteed before issues are resolved.
Who fixes the vulnerabilities?
The scan provides findings and remediation guidance. Changes to your website, server or network are handled by your administrator or service provider unless you have separately arranged a remediation service.
Can I scan a website behind a CDN or WAF?
The scan scope and access configuration need to be correct. Follow the current provider guidance and involve your hosting or security administrator if scans are blocked or affected by interference. Contact support if you need help configuring the scan.
How quickly can I obtain the final report?
Timing depends on activation, scan completion, findings, any repeat scans and the required report review. A scan completing does not always mean the final report is ready to submit.
What documents will I receive?
The reporting workflow provides technical findings, an executive summary and an Attestation of Scan Compliance, subject to the required process. Your bank may also require a relevant SAQ and other validation documents.
Can I add more public IP addresses?
Yes. Additional IP addresses can be added to your licence after purchase and are billed separately. Contact us and we will arrange them.
How does renewal work?
A renewal is placed as a new order linked to your current licence. It can be placed during the last 30 days before the licence expires, and it must cover at least the number of IP addresses your licence currently includes.
Can I get a refund?
No. PCI scanning licences are prepaid and non-refundable. If you are not sure which plan or how many IP addresses you need, contact us before you order and we will help you choose.
Our clients
Payment Options
All transactions are processed via PCI-DSS compliant gateways. SEPA bank transfer also available for EU customers.