Jump to main content
HCL Logo Product Documentation
Customer Support Software Academy Community Forums
AppScan Standard Help
  • Welcome
  • Getting started
  • Configuration
  • Manual exploring
  • Scanning
  • Data
  • Issues
  • Reports
  • Tools
  • Integrations
  • Best practices
  • FAQ & Troubleshooting
  • CLI
  • References
  1. Home
  2. Best practices

    This section contains some best practices and use cases for advanced users.

  • Welcome

    Welcome to the documentation for HCL AppScan Standard version 10.7.0

  • Getting started

    This section provides a short tour of basic product features and procedures, including using the wizard to set up a scan.

  • Configuration

    You configure a scan by choosing settings that best describe your application, and the kind of testing you want.

  • Manual exploring

    Manual exploring enables you to explore specific parts of your application, filling in fields and forms as you go. This can be a way of ensuring that particular areas of the site are covered, and that AppScan has the information needed to complete forms correctly.

  • Scanning

    Learn how to start a scan, and what happens during the scan; how to manually manipulate the Explore stage, and how to export the results of a scan.

  • Data

    Data view is populated with information about the structure of the site during the Explore stage of the scan.

  • Issues

    Issues view provides access to the results of a scan. You can view results at a high level or select specific tests or objects and access more details. These details include how to fix, requests/responses, and differences between the test variants that resulted in issues. You can manipulate the severity of issues, resend tests (with or without modifications), and create reports based on Issues.

  • Reports
  • Tools

    This section explains how to use additional tools provided with HCL AppScan Standard.

  • Integrations

    This section describes integrations of other applications with AppScan Standard:

  • Best practices

    This section contains some best practices and use cases for advanced users.

    • Workflow for advanced users

      This workflow can help users with experience in the field of web security achieve a more thorough scan.

    • Sites that use parameter-based navigation

      Sites in which all pages are reached using a single URL, need a specific scan configuration.

    • Scanning live production environments

      The following risks and suggestions should be considered before scanning a live site with AppScan.

    • Understanding Test Optimization

      This section describes how Test Optimization works and how best to incorporate it into your development lifecycle.

  • FAQ & Troubleshooting
  • CLI

    This section describes the syntax and options available using the Command line interface.

  • References

    Menus and toolbar summaries, and glossary

Best practices

This section contains some best practices and use cases for advanced users.

  • Workflow for advanced users
  • Sites that use parameter-based navigation
  • Scanning live production environments
  • Understanding Test Optimization
  • Workflow for advanced users
    This workflow can help users with experience in the field of web security achieve a more thorough scan.
  • Sites that use parameter-based navigation
    Sites in which all pages are reached using a single URL, need a specific scan configuration.
  • Scanning live production environments
    The following risks and suggestions should be considered before scanning a live site with AppScan.
  • Understanding Test Optimization
    This section describes how Test Optimization works and how best to incorporate it into your development lifecycle.
  • Share: Email
  • Twitter
  • Disclaimer
  • Privacy
  • Terms of use
  • Cookie Preferences