Skip to main content
  • Overview: high-level security status and activity
  • Assessments: active, scheduled, and historical assessments
  • Findings: search and manage findings across all targets
  • Coverage (Beta): review which security checks have passed, failed, need input, or remain untested
  • Agents: run directed security work, reuse templates, and manage agent schedules
  • Analytics: review organization-wide security metrics and trends
  • Target Inventory: manage targets, verification, scope, credentials, and login instructions
  • Knowledge Lakes: manage reference documents for your organization and targets
  • Reporting: generate and manage downloadable reports
  • Settings: account, team, billing, notifications, integrations, WAF, API keys, status, security badge
  • Billing: directly accessible from the sidebar for quick access to credits, subscription, and invoices
Depending on your organization’s access, Code Review and Infrastructure may also appear.

Assessments vs. Agents

Assessments provide broad, repeatable penetration testing. Configure the target and method, start the run, and review the resulting evidence and findings. Agents are for directed security work. Select a target, describe what you want investigated, and monitor the run. Agents are useful for targeted investigations, custom checks, and follow-up work that may need your input.

Choose the Right Workflow

How the Workflow Fits Together

MindFort connects authorized target setup, broad discovery, focused investigation, remediation, validation, and stakeholder reporting in one workflow. Use assessments for broad discovery, Agents for directed follow-up work, MCP for working with findings from supported coding assistants, and reports for sharing results with stakeholders.
  1. Keep target configuration current.
  2. Run assessments regularly.
  3. Triage findings and assign owners.
  4. Remediate through tickets, patching, or your connected developer workflow.
  5. Retest and validate resolved findings.
  6. Review coverage and trends, then publish regular reports.

Core Security Artifacts

  • Scope and guardrails define what agents may test and which areas require extra care.
  • Credentials and login instructions unlock authenticated coverage.
  • Assessment logs show endpoint and note evidence recorded for an assessment run.
  • Findings capture severity, CVSS score where available, evidence, proof-of-concept detail, and remediation guidance.
  • Reports package target-level results for stakeholders.

Access Notes

Some sections depend on role, plan, or billing status. If a feature is unavailable, confirm:
  • user role permissions
  • active subscription state
  • feature availability for your organization