New Qualys Scheduling Service 

Limited Customer Release

July 31, 2025 (updated on November 14, 2025)

New Feature - Qualys Scheduling Service

We are now migrating to a new Qualys Scheduling Service (QSS), which is an independent and more efficient scheduling service for creating and managing scan schedules and report schedules.

There is no impact on the existing scan schedules and report schedules. The existing schedules will be automatically migrated to the Qualys Scheduling Service. 

The limited customer release note presents the changes available with the new scheduling service. 

TotalAppSec 2.4 | Web Application Scanning 1.24

With this release, we have integrated the new scheduling service for the report schedules.

Launch On-Demand Report Generation

With this release, you can instantly create a report schedule by selecting the Now checkbox in the Scheduling section of the Create New Report Schedule workflow. This enhancement simplifies your scheduling process and saves you time when you want to generate reports on demand.

In the report scheduling workflow > Scheduling tab, under the Launch Information section, select the Now checkbox. When the Now option is selected, the report generation is launched immediately after the report schedule is created.

Create New Report Schedule.

Create Distribution Group in Scan Schedule

We have introduced an option to create and add distribution groups while creating new scan schedules. The recipients added to the distribution groups receive the scheduled scan notifications at the specified time. Earlier, only individual recipients could be added to the distribution group.

This saves you time and ensures that all the affected stakeholders are notified of upcoming schedule scans.

To add a distribution group, navigate to the Notification section in the New Scan Schedule workflow. Under the Distribution Groups section, you can add the available distribution groups to send the scan notifications. You can also create a distribution group using the Create distribution group option.            

Create Distribution Group.

TotalAppSec 2.3 | Web Application Scanning 1.23

With this release, we have integrated the new scheduling service for the report schedules. 

Schedule API Reports

With this release, you can create schedules for API reports. The Web Application Report has been renamed to Application Report. Earlier, we could create schedules for the Web Application Report, Scan Report, Scorecard Report, and Catalog Report.

To create a new API Report Schedule, navigate to Reports > Schedule. In the Schedules tab, click New Report Schedule > Target. Under the Select one or more applications section, click  to select APIs.

API Report Schedule.

We have provided the feature to enable the API security details.

 CSV and XML types are not supported for API Security reports.

Launch On-Demand Vulnerability Scans

A new option to launch an on-demand vulnerability scan is available while creating or editing the scan schedule. This enhancement simplifies scan schedules. and prevents scan failure due to an inaccurate scan start time.

In the scan scheduling workflow > Scheduling tab, under the Launch Information section, select the Now checkbox. After this scan schedule is submitted, a vulnerability scan is triggered immediately.

On-Demand Vulnerability Scans.

TotalAppSec 2.2 | Web Application Scanning 1.22

With this release, we have integrated the new scheduling service for the scan schedules. 

Scheduling Option for Compliance Scan and Web Application Retest 

You can now create schedules for two types of scans- Compliance Scan and Retest Webapp, in addition to the discovery and vulnerability scan. 

Scheduling Options from Scans > Schedules 

You can view the scan schedule options in the Schedules tab under Scans as shown in the following image

new options in Schedules in Scans tab.

The Compliance Scan option is available only with the TotalAppSec subscription.

The schedules created for compliance scan and web application retest are listed in the Schedules tab, as shown in the following image:

compliance and webapp retest in the Schedules tab.

In the Schedules tab, icon for the compliance scan.  indicates the compliance scan schedule and icon for webapp retest. indicates the retest web application schedule. 

Scheduling Web Application Retest Option from the Web Applications 

The option for scheduling web application retest is available from the Web Applications tab in the Quick Actions and Actions menu.

Retest Webapp Schedule in Web Applications tab.

Scheduling Option from the APIs Tab

The option for scheduling a vulnerability and compliance scan is now available from the APIs tab in the Quick Actions and Actions menu.

Scheduling option in the APIs tab in Quick Actions.

The APIs tab is available only with the TotalAppSec subscription.

Token Changes for Scan Scheduling 

The following tokens are added to the Applications > APIs tab.

Token Description
application.scanScheduledType Use this token to search APIs for which the selected type of scan is scheduled: VULNERABILITY, COMPLIANCE
application.scanScheduled Use this token to search the web applications for which the scan is scheduled.

The following tokens are updated with the new scheduling changes. 

Tab  Token Description
Scans > Schedules scan.scheduled.type A new value - Compliance is added to search the scheduled compliance scans. 
Applications > Web Applications  application.scanScheduledType A new value - Compliance is added to search the web applications for which a compliance scan is scheduled. 

Stop Scan Option in Scan Schedule

A new option to stop the scan is now available in the vulnerability scan scheduling when the progressive scan is enabled. If you select the Stop Scan After Completion check box, the scan schedule ends after the progressive scanning is completed. 

Stop Cancel After Completion checkbox in vulnerability scan scheduling

QID 150497 is reported when the progressive scanning is completed. 

New Widgets on the Dashboard 

You can now add the widgets based on the new scan schedules and report schedules on the TotalAppSec dashboard.