Frequently asked questions
This page answers the most common questions about Denetta briefly and directly: what it does, how it accesses devices, how the score is calculated, where data is kept and how it is priced.
Questions and answers
What is Denetta?
Denetta is an IT infrastructure health and security audit platform developed by Bilgi Teknoloji. It audits infrastructure layers such as firewalls, network devices and domains with read-only access, produces concrete findings with expert rules, and combines them into a single 0-100 Infrastructure Health Score.
Does Denetta make changes to my devices?
No. It only reads: show/get/display commands, SNMP GET/WALK and read-only API calls. It never writes to a device and never attempts an active exploit. The remediation commands it suggests are only displayed.
Do I need to open ports on the customer network?
No. The collector installed on the customer network only talks outbound, over HTTPS on port 443. For FortiGate you can also start with a single backup file, with nothing to install.
How is the Infrastructure Health Score calculated?
Every category starts at 100 and findings add penalties by severity. Penalties are not subtracted linearly but applied along a saturation curve, so every fix raises the score, and the score comes with a rule-by-rule breakdown. Categories you don’t use or license never lower the score.
Which devices and areas are supported?
Today: FortiGate firewalls (126 rules), FortiOS vulnerability matching, switches and routers across 19 vendor profiles, and domain/email security (25 rules). Windows/AD, servers/storage, Microsoft 365 and cloud are on the roadmap.
Is data that cannot be read counted as “passed”?
No. A field that could not be collected, or could not be seen because access was not granted, is reported as a “visibility gap”; a check that does not apply is “out of scope”, and a check from an unlicensed module is “not licensed”. All three are shown separately from “passed”.
Does Denetta replace my RMM or Zabbix?
No. Real-time monitoring stays with your existing tools; Denetta adds a layer of periodic deep audits, scoring and expert analysis on top.
Where is my data kept?
On servers in Türkiye. Credentials are held in an AES-256-GCM encrypted vault and every company is isolated at row level in the database. Scans that connect to your devices never start without signed and stamped written consent.
How is Denetta priced?
Monthly, and devices are not counted. Firewall and network modules are licensed per site, domain and email security per company. All list prices are on the pricing page; annual prepayment gets 15% off.
How is my config backup stored?
Denetta does not take the backup by reading your device; your device sends the full backup it produces itself. The file is encrypted with AES-256-GCM and each version is retained for 1 year after it was last seen on your device. Denetta never restores a backup to your device. This feature is in early access.
How do MSPs use Denetta?
All customers are managed in one dashboard through a company → site → device hierarchy, with roles (owner, operator, read-only customer) and row-level tenant isolation. Your customer only sees their own company.