
Introducing GraphQL Support for API Scanning
Detectify’s new GraphQL API Scanning uses hacker-led research to provide highly accurate (99.7%), payload-based security testing. It identifies complex vulnerabilities, helping enterprises meet PCI DSS …
Detectify

Maintaining a secure external attack surface is no longer just about finding vulnerabilities; it’s about proving your resilience to partners, auditors, and regulatory bodies. Today, we are excited to announce Detectify’s PCI ASV Scanning, delivered in partnership with Clone Systems.
By integrating Approved Scanning Vendor (ASV) capabilities directly into the Detectify platform, we are turning a bureaucratic hurdle and complex PCI DSS requirements into a seamless, automated workflow as part of your security stack to help thwart fraudulent behaviour. Now you can manage your security posture and your compliance mandates within a single view in the Detectify platform.
We’ve launched this partnership to solve three core strategic needs:
Compliance should be a byproduct of good security, not a recurring administrative burden. However, the stakes for missing a deadline are high. You can now manage your external attack surface and your mandatory compliance mandates from a single, unified view and reduce the visibility gap. Our new PCI ASV scanner is designed for continuous governance to solve three critical challenges:
We’ve designed the PCI ASV workflow to be as intuitive as the rest of the Detectify suite, with little bloat and friction. Here is how it fits into your existing security routine:
A scan is only as good as the documentation it produces. Our partnership provides access to the full suite of documentation required for a successful audit:
We maintain a 3-year retention policy for all scan reports, ensuring you have a historical record for auditors, with in-app notifications to alert you before any reports expire.
Whether you are a SaaS utilizing API-based checkouts (satisfying SAQ A-EP or D requirements) or an enterprise managing a massive global footprint, PCI ASV scanning with Detectify ensures you have the technical rigor needed to protect your revenue.
With Detectify, move toward a model of continuous governance and keep your attack surface resilient.
Ready to automate your PCI compliance? Log in to your Detectify dashboard to get started.

Detectify’s new GraphQL API Scanning uses hacker-led research to provide highly accurate (99.7%), payload-based security testing. It identifies complex vulnerabilities, helping enterprises meet PCI DSS …

Most organizations share a common, uncomfortable secret: they can’t answer basic questions about what is actually exposed on their IP ranges. As companies grow, whether …