Companies like Drata and Sprinto among others offer the kind of service that I am interested in.
In my experience the gps data from mobile phones are much more varying in quality than what I get from an iOS or android simulator and I would like to have more realistic data to work with. Real recordings would be the best.
But you have the option to use SSO with Okta on 1password as well. When using that I don't think that the client is able to use the password for encryption of your public/private key anymore. How does it work in that case? And do you still have an emergency kit?
I am thinking more in ways like how a lot of podcasts are doing it, where the host is reading the ad. It feels more like a personal recommendation that way, which I think is better.
So as a developer I would like to gain more knowledge about how pentesters usually work, so that I can continuously test my own implementations. And because I am curious ofc. Is there any good sources out there?