Primitive 10 / Pentest

Pentest results card

Engagement summary card produced after each external penetration test. Shows the engagement reference, the tester (with accreditation), the testing window, the chosen methodology, an executive paragraph, findings by CVSS severity, and a download CTA for the redacted report. Used in customer trust packages.

Production answer

Pentest results card is a reusable Oak Flats Muffler Men UI primitive with documented states, accessibility expectations, theme behavior, and implementation evidence.

Primary CTAReview Pentest results card states
Generative search brief

Pentest results card: Engagement summary card produced after each external penetration test. Shows the engagement reference, the tester (with accreditation), the testing window, the chosen methodology, an executive paragraph, findings by CVSS severity, and a download CTA for the redacted report. Used in customer trust packages.

Live primitive · one engagement
Penetration test report

Annual external penetration test — booking + parts surfaces

Engagement
ENG-2026-018
Window
2026-04-042026-04-18
Methodology
OWASP WSTG v4.2 · PTES grey-box · IRAP-aligned

Two-week grey-box engagement focused on the public booking, quote and parts surfaces plus the workshop staff console. No critical or high findings remained at re-test. Two medium-severity SSRF candidates were confirmed mitigated by the workshop's egress allowlist. Three low-severity informational items were filed for next sprint.

Findings by severity

Critical0
High0
Medium2
Low3