AI-Powered SAP Penetration Testing Co-Pilot - Interactive Test

Upload your SAP configuration files to test our AI-powered penetration testing co-pilot

Demo Mode: This is a functional demo. Only 1 security rule will be processed against your data for preview. Your files will be processed and deleted after analysis.

Required SAP Data Files

Please upload SAP table data exports in CSV, Excel, or JSON format. The system accepts the following SAP tables:

USR02 - User Master Data Critical

Purpose: Analyze user accounts, default users, password policies

Key Fields: BNAME, LOCKSTAT, PASSCODE, ERDAT

Export: SE16 → USR02 → Export to spreadsheet

AGR_1251 - Role Authorizations Critical

Purpose: Check authorization objects and privileged access

Key Fields: AGR_NAME, OBJECT, FIELD, LOW, HIGH

Export: SE16 → AGR_1251 → Export to spreadsheet

RSPARAM - System Parameters High

Purpose: Validate system hardening and security parameters

Key Fields: PARAM_NAME, PARAM_VALUE

Export: RZ11 → Export parameters or SE16 → RSPARAM

RFCDES - RFC Destinations High

Purpose: Analyze RFC security configurations

Key Fields: RFCDEST, TRUSTED_USER, NO_AUTH

Export: SM59 → Export or SE16 → RFCDES

V_T000 - Client Data Medium

Purpose: Check client security settings and protection

Key Fields: MANDT, CCCATEGORY, CCNOCLIIND

Export: SCC4 → Export or SE16 → T000

TSTC - Transaction Codes Medium

Purpose: Identify privileged transaction access

Key Fields: TCODE, PGMNA, DYPNO

Export: SE16 → TSTC → Export to spreadsheet

Important Notes:
  • Files can be in CSV, Excel (.xlsx), JSON, or TXT format
  • File names should contain the table name (e.g., "USR02_export.csv")
  • You can upload partial data - the system will analyze what's available
  • All files are deleted immediately after processing
  • Maximum total file size: 200MB

Upload Your SAP Files

Drag & Drop Your SAP Files Here

or click to browse and add more files

Don't Have SAP Files?

If you don't have access to SAP data files, you can still see how the system works: