Let's talk about your project
DOKI / Cybersecurity

Cybersecurity · Badge verification

The badge shows that a specific asset passed a Doki assessment on a specific date and that the vulnerabilities found were verified as closed. It is not an official certificate or a security guarantee; anyone can verify its scope, date and validity.

  • Assessment summary
  • Validity period
  • Badge verification
  • Renewal retest
01 / What this service includes

More than an image: a verifiable record.

01

Based on an assessment

The badge cannot be bought; it is given to assets that went through a security test and whose critical findings were closed by retest. The record states which domain and which date it covers.

02

Public verification

When a visitor clicks the badge, the verification page on Doki opens and shows the current status: valid, expired or revoked. A copied image cannot pass this check.

03

Time-limited and renewable

Security is not static, so the badge has an end date. Renewal requires a fresh assessment. A serious incident or a change of scope can lead to the badge being suspended.

02 / How it works

The life cycle of a badge

Every stage from application to renewal is recorded and reflected on the verification page.

  1. Assessment
  2. Closing the findings
  3. Badge issued
  4. Renewal retest
03 / Scope

Let's define the scope together.

We clarify the scope, deliverables and acceptance criteria together in the first meeting. The written quote lists that scope item by item; if the scope changes, the quote is updated as a new version.

A Doki badge is its own time-limited assessment, not an official certificate or security guarantee. Private findings are not disclosed.

Deliverables

  • 01Assessment summary
  • 02Validity period
  • 03Badge verification
  • 04Renewal retest
04 / Process

How we move forward, step by step.

Each step ends with something concrete in your hands; we move on with your approval.

  1. 01

    Assessment

    We assess the current state against agreed criteria and note gaps with evidence.

  2. 02

    Remediation

    We close findings together with your team and document each change.

  3. 03

    Verification

    We check the result with an independent eye and keep the verification record.

  4. 04

    Renewal

    We reassess before the period ends and renew if the conditions are met.

05 / Decision details

What to know before you ask for a quote.

What is included, what we need from you, timing and payment, all in one place. The exact scope and price are set in the written quote.

Included

  • A public verification page showing scope, date and validity.
  • Renewal through a retest.

Not included

  • The badge is not an official certificate or a security guarantee.
  • Publishing your private findings: they stay confidential.

What we need from you

  • A completed assessment, with the fixes to its findings confirmed by a retest.
  • We respond to every request within 12 hours.
  • Meetings are held in Turkish; correspondence and deliverables are handled in the language of your choice with translation support.
  • We work in person in Istanbul and remotely across Türkiye and worldwide.
06 / FAQ

The questions on your mind.

Tell us what you need; we will define the scope together.

Tell us about your project
Does the badge prove that my site is secure?

No. The badge shows that a defined scope was assessed on a given date and that the findings were closed; it does not guarantee that no vulnerability will appear later. That is why it is time-limited and its scope is stated clearly on the verification page.

Is permission needed before testing?

Yes. Only systems you are authorised for and have approved in writing are assessed.

Will testing affect my live system?

Scope, time window and methods are agreed in advance; risky steps require your separate approval.

Let's begin

Let's talk about your project.

Tell us what you need; we will define the scope together.