Skip to main content

SOC 2 Coverage Report

The SOC 2 Coverage Report shows how test scenarios from Auto and Hybrid pentests on your targets map to SOC 2 Trust Services Criteria. Generate it from Reports, the same way you generate your other PDF reports.

What's new

  • Control-aligned coverage – The report maps pentest scenarios to SOC 2 Trust Services Criteria, so you can see which controls were exercised and how.

  • Validated or At Risk, per control – Each in-scope control, area, scenario, and scan is marked Validated or At Risk. A coverage summary shows the overall picture before you open the details.

  • One PDF across targets and scans – Select finished Auto or Hybrid pentests that were run with SOC 2 as the testing objective. Astra combines them into a single report, with per-scan sections so findings stay attached to the right target.

  • Scenarios and vulnerabilities, together – Control coverage lists every test scenario. Vulnerabilities that map to those controls include the same write-up you’d expect in a full report: impact, proof of concept, and suggested fixes.

  • Email or download – Generate from Reports → Compliance Report → SOC 2, then send it to your inbox or download it from the reports list.

New