Do your scans meet the requirements for PCI compliance?

Yes. Our external vulnerability scans are Approved Scanning Vendor (ASV) certified and approved. Included with every passing scan is a certified PCI DSS Attestation of Scan Compliance report.

How long do scans generally take?

Scan duration depends on the responsiveness of your server. Some scans finish in close to an hour, while others take over four hours.

Which IP Addresses Should I Scan?

Read our article on this here.

How often should I have my site scanned?

For most customers, we recommend that you schedule scans monthly.

Will a PCI scan cause my server to go down?

Our scans are designed to be low-impact and non-intrusive.

How do I get my scan results?

You will be notified by email when your scan completes. Login to your ServerScan account, go to scan portal, then click "Compliance Reports".

How do I complete my Self-Assessment Questionnaire (SAQ)?

In the My Account section of ServerScan after you log in, all of the SAQ forms are available for download.

Which Self-Assessment Questionnaire should I complete?

This depends on how you receive, transmit, and/or store credit card information. See our SAQ Selection Guidance page.

Can I adjust the schedule of my scans?

Yes. Login to your account, go to scan portal, click "Scan Schedules" under "Manage Scans".

What other types of scans does PCI DSS require?

See: Scanning Requirements Explained.

How does your money-back guarantee work?

If you are unable to obtain a passing PCI scan with the resources we provide, we will refund your full purchase price.

Great! How do I get started?

Sign up for PCI scanning. Once purchased we will configure your account and run your first scan.