> ## Documentation Index
> Fetch the complete documentation index at: https://help.dsalta.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Vendor Risk Assessment

> AI-powered detailed risk evaluation including security policies, data protection, and operational resilience.

The Risk Assessment page provides a comprehensive, AI-generated evaluation of a vendor's security and compliance posture. For automated vendors, this assessment is generated entirely by AI based on domain and IP scanning.

## Assessment overview

At the top, you will see the overall **security rating**, **total risk findings**, and a summary of data sources:

<CardGroup cols={3}>
  <Card title="Domains" icon="globe">
    Number of domains scanned for this vendor.
  </Card>

  <Card title="IP Addresses" icon="server">
    Number of IP addresses analyzed.
  </Card>

  <Card title="Total Risks" icon="triangle-exclamation">
    Total number of risk findings identified.
  </Card>
</CardGroup>

## AI-powered assessment sections

The detailed assessment covers:

* **General Findings** — overall security observations
* **Security Policies & Processes** — organizational security governance
* **Asset Management** — how the vendor tracks and protects assets
* **Infrastructure Management** — cloud and on-premise security
* **Application Security** — secure development practices
* **Data Protection** — encryption, access controls, data handling
* **Risk Management** — the vendor's own risk management practices
* **Operational Resilience** — business continuity and disaster recovery
* **Conclusion** — overall assessment summary with recommendations

## Manual vs. automated assessments

For **automated** vendors, the AI completes the entire assessment based on scanned data. For **manual** vendors, you must complete the assessment yourself, entering findings and scoring for each category.

<Tip>
  Click the **Refresh** button to trigger a new AI scan with the latest data. Assessment refreshes use the most current domain and IP information available.
</Tip>

## Related pages

* [Vendor Summary](/guides/vendors/vendor-summary)
* [Risk History](/guides/vendors/risk-history)
