ESEasysoft PenTest
Easysoft PenTest Portal
See your security risks in plain language, track fixes by owner and due date, and download client-ready reports your leadership team can act on.
Client-ready risk reports
Guided remediation steps
Compliance control mapping
Continuous risk tracking

Free Pen Test Authorization

Assessment authorization template for review and signature.

Parties

Client authorizes Easysoft Integrating Technologies, Inc. to perform the assessment described in this authorization for the tenant organization and assets listed in the final written scope.

Authorized Scope

A limited, non-destructive free external assessment of the written, approved scope to identify observable security posture gaps and produce a client-ready summary.

The client represents that it owns, operates, or has written authority to assess all listed domains, IP ranges, applications, cloud tenants, and endpoints. Third-party systems must be excluded unless written permission is provided.

Testing Rules

Testing is limited to defensive discovery, configuration review, safe validation, and reporting. Denial-of-service, destructive activity, persistence, data extraction, credential attacks, social engineering, and exploitation beyond written approval are excluded.

Scheduling And Contacts

Client will provide approved testing windows, emergency contacts, escalation contacts, and any systems that must be excluded or rate-limited.

Data And Reports

Easysoft may collect evidence needed to support findings and remediation. Reports are confidential and intended for authorized client personnel, auditors, and remediation teams.

Client Responsibilities

Client is responsible for validating scope, notifying relevant internal teams, monitoring production impact, backing up critical systems, remediating findings, and requesting retesting when fixes are complete.

Signatures

Client Authorized Representative: __________________________ Date: ____________

Easysoft Representative: _________________________________ Date: ____________

These templates are provided for operational intake and should be reviewed by qualified counsel before use as a binding agreement.