Noctara Red
AI-powered pentest reports

AI-powered pentest reports. Built for the way you work.

Upload your tool outputs. Get a structured, client-ready pentest report enriched with vulnerability context and risk scoring.

01

Upload raw tool outputs from your existing workflow.

02

Convert scans into structured, client-ready pentest reporting.

03

Review findings with risk scoring, CVE enrichment, and export flows.

Workspace Preview

Analyst shell

Q2 Pentest Client X

Report Blocks

Analysis reports generated from uploaded files

Unique CVEs

5

Highest CVSS

9.8

Findings

7

Remote code execution in auth worker

CVE-2024-3400

9.8

CRITICAL

443

Backdoored compression library detected

CVE-2024-3094

10.0

CRITICAL

-

Memory disclosure on edge gateway

CVE-2023-4966

9.4

HIGH

443

HTTP/2 rapid reset exposure

CVE-2023-44487

7.5

HIGH

443

OpenSSH regression (regreSSHion)

CVE-2024-6387

8.1

MEDIUM

22

Platform

Manage engagements. Govern quality. Deliver reports.

Noctara Project Workspace

Navigation

General
Evidence
Report

Active Engagements

Q2 Pentest Client XIn Progress
FinBank InfrastructureReview
Retail API AuditDelivered

Engagement Management Engine

Centralise every pentest engagement in one platform. Track progress, manage scope, organise evidence files, and keep stakeholders informed without spreadsheets.

BURP SUITE Report

Unique CVEs

0

Critical/High

0/0

Findings

4

SummaryFindingsRecommendations

SQL Injection on /api/search HIGH

Reflected XSS on /dashboard MEDIUM

Missing Content-Type Header INFO

AI Assisted Report Intelligence

Noctara automatically structures findings, enriches CVEs with NVD context, calculates risk, and turns uploads into client-ready reports in minutes.

Audit & Governance Logs

2026-02-01 09:14

Report generated from burp-suite-report.xml

QA review passed

Reviewer: lead.pentester@team.local

Critical finding added

CVE-2026-9999 linked to exposed admin endpoint

QA & Governance Logs

Every action is logged. Track who reviewed what, when findings were added or modified, and keep a defensible audit trail for quality governance.

Integrations

One platform. Every engagement.

Supports Nmap, Nessus, Burp Suite, ZAP, Nuclei, testssl, and more, with new integrations added regularly.

nmap-network-scan.xml

Unique CVEs

3

Highest CVSS

7/10

Critical/High

1/2

Findings

3

SSH weak ciphers exposed on gateway

MEDIUM

Configuration

22

Outdated nginx build detected

LOW

Information

80

Telnet service discovered on legacy host

HIGH

Vulnerability

23

Tools

Built for professional security teams.

01

Capability

Structured Report Database

Every engagement stored, indexed, and searchable. Access historical reports and findings instantly.

02

Capability

Scalable Pricing Structures

Flexible token-based pricing that scales with your team. Pay for what you use.

03

Capability

CVSS & Custom Risk Connectors

Automatic risk scoring enriched with vulnerability context and exploitation likelihood.

04

Capability

Multi-team Collaboration

Invite team members, assign roles, and collaborate on engagements with full audit trails.

05

Capability

White-label Report Output

Deliver reports branded for your firm. Export to PDF, DOCX, and structured JSON formats.

06

Capability

Seamless Integrations

Connect with the tools you already use. Nmap, Burp Suite, Nuclei, and more out of the box.

Workflow

How teams use Noctara.

A streamlined workflow from raw scan output to report delivery.

01

Upload & Parse

Drop in outputs from your existing tools and convert them into structured report blocks automatically.

02

Review & Prioritise

Filter findings by severity and category so teams can triage quickly and focus on the highest-risk issues first.

03

Export & Deliver

Generate polished, client-ready reports in a consistent format that is ready for delivery and audit trails.

Pricing

Subscription pricing from the live catalog.

Single-team beta access for firms that want the full reporting workflow now.

Plan

Starter Monthly

250 monthly tokens for recurring report delivery work.

Early access
£50/ month
01

250 included monthly tokens

02

Structured pentest reports with CVE enrichment

03

Export workflows for client-ready delivery

04

Priority access to new integrations and product feedback

Create your engagement

Upload your tool outputs and let Noctara structure, enrich, and format your pentest findings automatically.

Sign your findings

Add review discipline and a repeatable delivery workflow that helps maintain report integrity for clients.