Platform
Everything you need to run a security practice
From scanning and findings to AI reports and client delivery — SecPortal replaces your spreadsheets, scattered tools, and manual workflows with one platform.
Orchestrate every security engagement from start to finish
Create, scope, and track security assessments, vulnerability management, compliance audits, and incident response operations. Assign team members, set deadlines, and deliver results through your branded client portal.
Learn moreVulnerability management software that tracks every finding
Vulnerability management tool with auto-calculated CVSS 3.1 scores, Nessus and Burp Suite imports, 300+ pre-built templates, and real-time remediation tracking. Log, prioritise, and close vulnerabilities from one platform.
Learn moreAI-powered reports in seconds, not days
Generate board-ready executive summaries, detailed technical reports, prioritised remediation roadmaps, and compliance summaries from your engagement data. Powered by Claude AI with full workspace context.
Learn moreYour brand. Your portal. Your clients love it.
Every client gets a secure portal on your custom subdomain. They view findings, track remediation progress, download reports, and pay invoices without a single email or phone call.
Learn moreInvoice and get paid without the admin
Create professional invoices per engagement in GBP, USD, or EUR. Send through your branded portal and let clients pay in one click via Stripe. Track status from draft to paid with automatic reconciliation.
Learn moreCollaborate across your entire team
Invite team members to your workspace, assign engagements and findings, and stay in sync with real-time notifications. Every action is logged for a complete audit trail.
Learn moreCompliance tracking without a full GRC platform
Map findings and controls to ISO 27001, SOC 2, Cyber Essentials, and more. Track compliance status with pre-built control templates, generate audit evidence, and export to CSV for external auditors.
Learn moreVulnerability scanning tools that map your attack surface
Vulnerability scanner with 16 automated modules for SSL, ports, headers, subdomains, cloud exposure, and CVE correlation. Get instant results from fast checks, then deep analysis from background workers — vulnerability detection tools built into your workflow.
Learn moreTest web apps behind the login
Run 17 specialised security tests against authenticated pages. Store credentials securely with AES-256-GCM encryption and test for SQLi, XSS, IDOR, CSRF, and 13 more vulnerability classes.
Learn moreFind vulnerabilities before they ship
Scan your source code for security issues with Semgrep-powered SAST and audit dependencies with SCA. Connect your GitHub, GitLab, or Bitbucket repos in one click.
Learn moreMap your attack surface before attackers do
Automatically discover subdomains, detect cloud exposure, check for subdomain takeover, and fingerprint technologies across your entire external perimeter.
Learn moreMonitor continuously catch regressions early
Schedule external, authenticated, and code scans on a recurring basis. Track security scores over time, detect regressions, and maintain your security posture automatically.
Learn moreReady to replace your scattered tools?
Start free and explore every feature. No credit card required.
No credit card required. Free plan available forever.