Step 1 — CUI handling
Step 2 — Access and remote work
Step 3 — Separation potential
Step 4 — Assessment context
Your Draft Scope Boundary Summary
Systems likely IN SCOPE
Systems likely in scope as Security Protection Assets
External relationships to document
Scope reduction opportunities to evaluate
Documentation you must produce
Recommended next steps
Recommended next step
What this result means
Your answers create a draft boundary hypothesis. Use it to confirm CUI flows, inherited service roles, and scope-reduction options before remediation spend.
Recommended package
Compare CMMC packages and start with the Scope Sprint path when the boundary is still uncertain.
Related asset
CUI Scoping Pack gives you inventory prompts and boundary memo structure. Request it by email.
Related article
CMMC Scoping and Boundary Guide explains the asset categories behind this result.
Talk to us
Book a scope call to review the draft boundary before remediation.
Reviewed: July 2026 by Velocity CMMC.
Updated: July 21, 2026.
Sources: DoD CMMC Level 2 Scoping Guide; 32 CFR Part 170; NIST SP 800-171 Rev. 2; Cyber AB role distinctions.
The tool provides planning guidance and does not determine official assessment status or replace legal/compliance review.
Your actual assessment boundary must be documented in an SSP and reviewed against your contracts, CUI flows, and service-provider responsibilities.