The engagement is the product: scoping, phases, findings, evidence, QA, the report, the retest. Every field, section and prompt is yours to define, and the document round-trips back into the assessment when you edit it in Word.
Scope requests go to the client through their portal, so the answers arrive structured instead of scattered across an email thread. From there the engagement is phased, scheduled and assigned in one view.
Writing up a finding is the part of the job that is unavoidable, repetitive, and the same twelve vulnerabilities every quarter in slightly different words. Drop your evidence in and one button drafts the rest of it.
Not a field at a time. One action reads the evidence you captured and fills in everything the finding needs, in order, skipping anything you have already written.
Each step is written to use what the previous ones produced, which is why the output hangs together rather than reading as eight unrelated paragraphs. Anything already filled in is left alone, so running it on a half-written finding completes it instead of overwriting your work.

The best description of a vulnerability your firm will ever write should be written once. Save any finding to the library, insert it into the next engagement with its scoring and remediation intact, and adjust the specifics. Your house wording stays your house wording, and it gets better every time someone improves it.
The library is a set of tables in your own database, like everything else. It is your firm's accumulated judgement, so it sits on your side of the trust boundary, exportable whenever you like.
Work moves through review states with comments attached to the thing being reviewed. Nothing reaches a client because someone forgot it had not been checked.
Methodology usually lives in a document nobody opens and in the heads of whoever has been there longest. Here it is a set of templates you write once and attach to the phases you run, so what was covered is a record rather than a recollection.
Start with the built-in PDF, generated from your branding with no Word skills needed. Move to a fully custom Word template whenever you want, and the platform fills it in. Mix them freely: a custom report template and the built-in attestation letter is a perfectly normal setup.
Everyone generates a document. The problem starts afterwards: the report gets edited in Word, delivered, and the platform is out of step with what the client actually received. Pental reads the edited document back in.
How templates are mapped, and how the AI drafts within them, is covered on the AI page
Two firms testing the same application produce different documents, because they work differently. The parts of the platform that decide what a report contains are yours to configure.
Everything above is on every plan, including the one with the free trial on it.
Clients get standing accounts on your domain, locked to their own organisation. Between engagements it is where their whole history with you lives: every report you have ever released, the findings and their current state, the attestation letters their auditors ask for. During an engagement it is where they scope, follow progress and receive findings. All of it under your brand.
The trial is the full platform, on whichever plan fits. The setup guide records every step, ten of them creating the database. Seven days, no card, and whatever you decide, the database stays yours.