Automated Tenable Scan Coverage Audits
Every morning, WebRun opens Tenable, compares your asset list against the last scan date on each one, picks out assets never scanned or overdue plus agents that stopped reporting, sends the gap list to Telegram, and puts a short remediation slot on your Google Calendar.
How do I check that every asset is actually being scanned for vulnerabilities?
WebRun audits your Tenable scan coverage every morning. It compares each asset against its last successful scan date, picks out assets never scanned, overdue ones, failed schedules and agents that went silent, sends the gap list to Telegram, and books a Google Calendar slot to close them.
- Unscanned assets surface the next morning, not at the audit
- Silent agents are caught within a day of going quiet
- Coverage is confirmed in writing every day, gaps or none
Built for security teams · IT operations · compliance leads · managed service providers
What does WebRun do on every run?
The exact actions WebRun takes, in order - in plain language, so you can adjust anything.
-
WebRun signs in and gets to work
Opens
www.tenable.comin a real browser with your saved login - no setup, no API keys. -
1
Tenable - find assets with no recent scan
WebRun opens Tenable to find assets with no recent scan. - Open Tenable and list assets with their last scan date
- Flag any asset never scanned or past your coverage window
- Check scan schedules for jobs that failed or did not run
- Note agents that have stopped reporting in and how long they have been quiet
Done when Every asset outside your coverage window is listed with the reason.
-
2
Telegram - send the coverage gap list
WebRun opens Telegram to send the coverage gap list. - Post the coverage gap list to your security channel
- Group it by cause: never scanned, overdue, failed schedule, or silent agent
- Put the longest gaps first with the days since the last successful scan
- Say plainly when coverage is complete so a quiet morning is still confirmed
Done when The security channel has today's coverage gap list.
-
3
Google Calendar - book time to close the gaps
WebRun opens Google Calendar to book time to close the gaps. - Open Google Calendar and find a free slot for the coverage owner
- Create a short remediation block listing the assets to bring back into scope
- Skip creating a block on days when there is nothing to fix
- Leave any invite to other people as a draft for you to send
Done when Time is held for closing today's coverage gaps.
How is each run configured?
Secure by default
Connect once, stays signed in
WebRun signs in once and keeps each session in a persistent environment, so every run picks up right where it left off.
Every action is checked against this policy before it runs.
Questions, answered
Does it change anything in Tenable?
No. WebRun only reads your asset list, scan history, and agent status. It never edits a scan policy, launches a scan, or removes an asset, so the audit cannot alter your configuration.
Will it invite other people to the remediation slot?
Only you get a calendar block by default. Any invite that would email a colleague is left as a draft for you to send, so nobody is pulled into a meeting without your say.
How does it decide an asset is overdue?
You set the coverage window, for example 7 days for servers and 30 for laptops. WebRun compares each asset's last successful scan date against that window every morning.
Put this on autopilot.
Turn it on in minutes - or have our team set it up for you.