Free Tool

Penetration Testing Scope Change Addendum Template
vary an in-flight engagement without breaking the authorisation chain

A free, copy-ready penetration testing scope change addendum template. Twelve structured sections covering header and addendum references, parties, change trigger, asset delta and depth changes, authentication and credential references, schedule impact, commercial impact, risk and stop-test conditions, retest scope impact, named team and scheme reference changes, third-party permissions for added assets, and a fresh authorisation statement and signatures. Stacks on top of the executed engagement letter, statement of work, and rules of engagement; it does not replace them. Aligned with PTES, NIST SP 800-115, and the CREST Defensible Penetration Test specification.

No credit card required. Free plan available forever.

Loading tool...

Run scope changes on the same record as the original authorisation

SecPortal stores every signed addendum alongside the engagement letter, SOW, ROE, findings, draft and final reports, and retest evidence. One audit trail from initial authorisation through every scope change to closure. Free plan available.

No credit card required. Free plan available forever.