Skip to main content

Add a Target

Only organization admins can add targets.
  1. Go to Target Inventory.
  2. Select Add Target and choose the target type.
  3. Enter the required target name, address, and description.
  4. Optionally configure authentication.
  5. Review the configuration and complete the applicable verification step.
The guided flow covers Target Type, Target Details, Authentication, Review, and Verify Target.

Verify a Web Application or API

  1. Open target details.
  2. Go to the DNS section.
  3. Copy the TXT verification token.
  4. Add it in your DNS provider.
  5. Return and run Verify.
A target must be verified before it can be assessed.

Network Targets

When Network targets are available for your organization, enter the authorized IP address. Network targets do not use DNS verification or stored credentials. After creating one, select Contact Support on the target to request approval before running an assessment.

Manage Target Details

From the target detail page, you can:
  • edit target name and description
  • edit login instructions
  • add, edit, and delete stored credentials
  • add, edit, and delete target values (key-value context fields)
  • review verification state

Target Scope

Target details define the default testing scope for assessments and Agents. Keep the target address, login instructions, credentials, and target values current so the authorized boundary is clear. Use target values for context that is required to stay in scope, such as:
  • tenant slug
  • organization ID
  • workspace ID
  • environment name
  • account number
  • required environment setting or region selector
Document any included or excluded areas before launching a run. For detailed scope and guardrail guidance, see Scope and Guardrails.

Credentials in Target Details

In Stored Credentials, you can:
  • add new credentials
  • edit existing credentials
  • remove credentials
Use dedicated test credentials only.

Login Instructions

In Login Instructions, document the exact login path so MindFort agents can log into the target and continue testing authenticated areas reliably.

Delete Target

Use Delete Target only when you intentionally want to remove this target from active use.