Skip to main content
PCI DSS

Sectigo HackerGuardian PCI ASV Scanning

Formerly Comodo HackerGuardian

Scan your public IP addresses, identify vulnerabilities and prepare ASV reports for your acquiring bank. Standard and Enterprise include unlimited scans and rescans.

ASV means Approved Scanning Vendor. Final reports depend on successful scanning and completion of the required review.

Standard: £67.91 / year excl. VAT · 5 public IP addresses

External vulnerability scanning of public IP addresses Unlimited scans and rescans ASV scan reporting

Scanning by Sectigo Ltd, a PCI SSC Approved Scanning Vendor. Sold by LeaderSSL.

Who needs external PCI scanning

HackerGuardian helps merchants and service providers meet the external vulnerability-scanning requirements that apply to their payment environment. Outsourcing payment processing does not automatically remove the need for ASV scanning. Confirm your scan scope and validation requirements with your acquiring bank or assessor. A passing ASV scan covers the assessed external scope; full PCI DSS compliance also requires meeting the other applicable requirements.

PCI SSC FAQ 1604

External scanning by a PCI SSC Approved Scanning Vendor

On-demand and scheduled scans

Vulnerability findings and remediation guidance

Plans with 5 or 20 included public IP addresses

LeaderTelecom is an Interested Party of the CA/Browser Forum.

Compare PCI scanning plans

Standard

HackerGuardian PCI Scan Control Center

For scopes with up to 5 included public IP addresses

£67.91 / year

  • 5 included public IP addresses
  • Unlimited scans and rescans
  • ASV reporting following the required review
  • Vulnerability findings and remediation guidance

Total for 1 year £67.91 excl. VAT

Choose Standard

Enterprise

HackerGuardian PCI Scan Control Center Enterprise

For larger scopes, with up to 20 included public IP addresses

£206.68 / year

  • 20 included public IP addresses
  • Unlimited scans and rescans
  • ASV reporting following the required review
  • Vulnerability findings and remediation guidance

Total for 1 year £206.68 excl. VAT

Choose Enterprise

HackerProof

HackerProof Trust Mark incl. Daily Vulnerability Scanning

£467.48 / year

  • 20 IP-addresses
  • unlimited PCI Scans Per Quarter
  • Daily Website Vulnerability Scans
  • HackerProof Trust Mark
  • ASV Scan Report Included

Total for 1 year £467.48 excl. VAT

Buy now

Support for your PCI scanning

LeaderSSL handles your order, billing, additional IP addresses and renewals. Sectigo, as the Approved Scanning Vendor, performs the scans and the required report review. Your administrator or service provider implements any fixes.

What each plan includes

Features Standard Enterprise HackerProof Trust Mark
Included public IP addresses 5 20 20
PCI Scans Per Quarter Unlimited Unlimited Unlimited
ASV Scan Report Included Included Included Included
Live Support Included Included Included
Daily Website Vulnerability Scans Not included Not included 1 Domain
HackerProof Trust Mark Not included Not included 1 Domain

Selected term: 1 year

Choose Standard

Selected term: 1 year

Choose Enterprise

Selected term: 1 year

Buy now

Scroll to compare plans

Your administrator or service provider implements the fixes. The scanning service supplies findings and remediation guidance.

Need more public IP addresses? Additional IPs can be added to a licence after purchase; contact us to arrange them.

A passing ASV scan report documents the external scanning results for your assessed scope. Full PCI DSS compliance also requires meeting the other applicable requirements and completing the relevant validation documents.

How HackerGuardian works

Five steps from purchase to the documents your acquiring bank asks for.

  1. Activate your account

    Follow the activation instructions provided after purchase.

  2. Add your scan targets

    Configure the public IP addresses and relevant domains within your authorized scope.

  3. Run a scan

    Start a scan or schedule it for an appropriate time.

  4. Resolve findings and rescan

    Review the guidance, arrange fixes and submit potential false positives through the supported process.

  5. Obtain and submit your report

    Complete the required attestation review and provide the resulting documents to your acquiring bank as required.

PCI scanning FAQs

ASV — Approved Scanning Vendor. SAQ — Self-Assessment Questionnaire.

Do I need an ASV scan if a third party processes my payments?

Outsourcing payment processing does not automatically remove the scanning requirement. PCI SSC states that SAQ A includes external ASV scanning requirements for merchant e-commerce webpages that redirect customers to a third-party payment provider or embed its payment iframe. Confirm your assessment scope and reporting requirements with your acquiring bank or assessor.

PCI SSC FAQ 1604

Does a passing scan mean my business is fully PCI DSS compliant?

A passing ASV scan addresses the external scanning requirement for the assessed scope. Full PCI DSS compliance also depends on the other applicable requirements and validation documents.

Can HackerGuardian scan private IP addresses or my local network?

This service scans publicly accessible targets. The standard PCI scanning licenses do not support private or internal IP addresses, or LAN scanning.

What happens if my scan fails?

Review the findings and remediation guidance, arrange the required fixes, and run another scan. Potential false positives can be submitted for review through the supported process. A passing result cannot be guaranteed before issues are resolved.

Who fixes the vulnerabilities?

The scan provides findings and remediation guidance. Changes to your website, server or network are handled by your administrator or service provider unless you have separately arranged a remediation service.

Can I scan a website behind a CDN or WAF?

The scan scope and access configuration need to be correct. Follow the current provider guidance and involve your hosting or security administrator if scans are blocked or affected by interference. Contact support if you need help configuring the scan.

How quickly can I obtain the final report?

Timing depends on activation, scan completion, findings, any repeat scans and the required report review. A scan completing does not always mean the final report is ready to submit.

What documents will I receive?

The reporting workflow provides technical findings, an executive summary and an Attestation of Scan Compliance, subject to the required process. Your bank may also require a relevant SAQ and other validation documents.

Can I add more public IP addresses?

Yes. Additional IP addresses can be added to your licence after purchase and are billed separately. Contact us and we will arrange them.

How does renewal work?

A renewal is placed as a new order linked to your current licence. It can be placed during the last 30 days before the licence expires, and it must cover at least the number of IP addresses your licence currently includes.

Can I get a refund?

No. PCI scanning licences are prepaid and non-refundable. If you are not sure which plan or how many IP addresses you need, contact us before you order and we will help you choose.

Our clients

  • Afterlogic
  • Asociace
  • BKM
  • Clarive
  • Université Caen Normandie
  • RISCO
  • e-dogs
  • e-horses
  • Erudio
  • HTflux
  • HostingPlus.cl
  • iNetsys
  • Kyocera
  • LiquidSonics
  • Paytweak
  • PDS
  • Pleiadi International
  • Supersys IT Services
  • Alto
  • WAPS
  • Comindware
  • Feedwater
  • Atılım Üniversitesi

Payment Options

  • Visa
  • Mastercard
  • Maestro
  • PayPal
  • SEPA
  • American Express
  • Bank transfer

All transactions are processed via PCI-DSS compliant gateways. SEPA bank transfer also available for EU customers.

Start your PCI scanning

Compare plans