Below are answers to common questions about PreRisk, how assessments work, how AI guidance is generated, and how billing and reports are handled.
What is PreRisk?
PreRisk is a security readiness and maturity assessment platform. It helps organizations understand gaps in their security posture before audits, certifications, or customer security reviews.
Does PreRisk perform penetration testing or vulnerability scanning?
No. PreRisk does not perform penetration testing, vulnerability scanning, exploitation, or active security testing. It focuses strictly on assessment, analysis, and guidance based on provided inputs.
Can I edit an assessment after completion?
No. Once an assessment is completed, it is locked to preserve data integrity and ensure that reports remain consistent and auditable.
What happens if I leave an assessment incomplete?
Incomplete assessments are saved as drafts. AI guidance and reports are generated only after completion.
When is AI guidance generated?
AI guidance is generated only after an assessment is completed and only for identified security gaps. No AI calls occur while answering assessment questions.
Is AI guidance regenerated every time I open a report?
No. AI guidance is generated once per gap and then cached. Reopening reports or downloading PDFs does not consume additional tokens.
How does AI token billing work?
Tokens are consumed only when new AI guidance is generated. PreRisk uses prepaid tokens—there are no subscriptions, automatic renewals, or postpaid charges.
Do I get any free AI usage?
Yes. Each account may receive a one-time free AI guidance generation for evaluation purposes. After that, prepaid tokens are required.
What happens if I don’t have enough tokens?
AI guidance generation is blocked until sufficient tokens are available. PreRisk does not allow negative balances or postpaid usage.
Can I download and share reports?
Yes. Executive-ready PDF reports can be downloaded and shared with stakeholders once an assessment is completed.
Is my data shared with other customers?
No. Assessments, AI outputs, and reports are isolated per user and organization. There is no cross-customer data sharing.
PreRisk provides decision-support guidance only and does not replace professional security, legal, or compliance advice. If your question is not listed here, please contact us via the Contact page.