Recommended Approach
Use non-production targets for evaluation and team onboarding.Minimum Checklist
- dedicated test environment
- dedicated test credentials
- no sensitive production data
- DNS control for domain verification
Evaluation Flow
- Add target.
- Verify domain.
- Add credentials and login instructions.
- Run assessment.
- Review findings and generate report.
Do Not Use
- unauthorized third-party systems
- production credentials tied to real users
- environments containing regulated live data without approval