Deployment

Working logins that never leave the building

Authenticated scanning means real credentials to an internal system. Argus Pentest runs inside your own perimeter, alongside the other two engines, so they stay there.

Overview

Self-hosted

Authenticated scanning is impossible to buy as a service in a regulated organisation, because it would mean handing a third party working logins to an internal system. Argus Pentest is deployed on your own infrastructure as one engine of the Argus platform, sharing its runtime, model configuration and credential store with the QA and AI engines — so the credentials, the scan traffic and the reports all stay inside your perimeter.

What it does

Your perimeter, your data

Credentials, scan traffic and reports stay on your own infrastructure.

No external SaaS dependency anywhere in the scan path.

One engine of a platform deployed as a single stack.

Model configuration and credentials are shared with the other two engines.

Suited to private-cloud and on-premise environments by design.

How it works

How it is deployed

1The platform is deployed inside your own environment
2Credentials are stored in your encrypted secret store
3Model routing is configured once for all three engines
4Scans and their reports never leave your infrastructure
FAQ

Common questions

Is there a hosted option?

No, and deliberately so. Authenticated scanning requires real credentials to an internal system, which is exactly what a regulated organisation cannot send to a third party.

Does it deploy separately from the other engines?

No. The QA, AI and pentest engines ship as one platform, so models, credentials and deployment are configured once for all three.

Explore more

More of what Argus Pentest does

Get started

See an authenticated scan of your own application

Request a demo to watch a scan log in to an approved target and work the surface behind the sign-in form.