Penetration testing report usually contains the following information:- Engagement start and end dates
- Information on the project team
- Initial data and accesses from the customer
- Agreed scope and terms of the engagement
- Executive summary section for management
- List of found vulnerabilities with detailed descriptions and steps to reproduce
- Remediation recommendations
Also, client gets weekly updates:
- Detailed reports on the most critical vulnerabilities found during the week
- Status updates, on which checks have been done, and which checks are planned on the next week