Report
A Report is a PDF deliverable from a completed Assessment. Each report presents the assessment's findings, evidence, and remediation recommendations as a shareable document suitable for stakeholders, compliance packages, and executive review.
What's in a report
A typical AISafe report includes:
- Executive summary. High-level overview of the assessment scope, finding counts by severity, and overall security posture
- Assessment metadata. Target/source, assessment type, duration, and date range
- Finding details. Per-finding sections with severity, evidence (code locations, taint flows, HTTP captures), proof-of-concept, and suggested fixes
- Remediation recommendations. Prioritized action items by severity
Generating reports
You generate reports from the assessment detail page after an assessment completes. Click Generate report to produce a PDF. AISafe stores the report as an artifact, and you can download or share it via a URL. Report generation consumes a small number of credits.
Webhook notifications
Once a report is ready, AISafe fires a report.ready webhook event if you have configured webhook subscriptions. You can deliver reports to a Slack channel, SIEM, or internal document system. See Webhooks for event details.