Skip to main content

Get Started with MindFort

MindFort is a red team security platform that helps you identify, validate, and remediate vulnerabilities in your web applications through advanced penetration testing. We focus on web application security and can test APIs as part of web applications.
New to MindFort? Create your free account at cloud.mindfort.app to get started.

Your First Red Team Assessment

Follow these steps to run your first penetration test:
1

Sign Up & Create Organization

Visit cloud.mindfort.app and create your MindFort account. Set up your organization with your team members.
2

Add Your First Target

Navigate to Settings → Targets and click Add Target:
  • Target Name: Give your target a descriptive name (e.g., “Production App”)
  • Web Domain: Enter the URL of the application you want tested (e.g., https://app.yourcompany.com)
  • Description: Add details about what this application does
Important: The target URL should be your actual application—NOT your login page. The login page URL goes in your login instructions (see below).
3

Configure Authentication (Recommended)

For deeper testing, add credentials so the agent can access protected areas:
  1. Add Credentials: Enter username and password for a test account
  2. Write Login Instructions: Tell the agent how to authenticate
Login Instructions Example:
1. Go to https://yourcompany.com/login
2. Enter username and password
3. Click "Sign In"
4. After login, you will be redirected to https://app.yourcompany.com/dashboard
The login instructions explain WHERE to log in and what happens AFTER login. The agent handles authentication separately, then tests your target application. See Writing Login Instructions for detailed guidance.
4

Start Red Team Assessment

Click New Assessment in the left sidebar:
  • Select your verified target from the dropdown
  • Choose assessment method:
    • Turbo: Fast (minutes to 1 hour) - best for regular monitoring
    • Balanced: Medium (1-2 hours) - good balance of speed and depth
    • Deep: Thorough (several hours) - best for major releases
  • Optional: Select stored authentication credentials
  • Click Start Assessment
5

Monitor and Review Results

  • Watch progress on Active Assessments page
  • Once complete, explore findings in Vulnerabilities section
  • Review exploitation evidence and business impact analysis
  • Generate reports for stakeholders using the Reporting feature
Pro Tip: Run 2-3 assessments when you first add a target. MindFort learns your application with each run—it will map your app’s structure, learn your authentication flows, and become increasingly effective at finding vulnerabilities. Think of it as onboarding a new security team member who gets better the more they work with your app.

Red Team Testing

MindFort’s red team assessments provide advanced penetration testing capabilities:
  • Exploitation Focus: Not just finding vulnerabilities, but proving they can be exploited
  • Real-World Techniques: Using the same methods as actual attackers
  • Concrete Evidence: Screenshots, payloads, and step-by-step exploitation proof
  • Attack Chain Analysis: Understanding how multiple vulnerabilities combine

Understanding Red Team Results

Your red team assessment results include:
  • Exploitation Evidence: Screenshots and payloads showing successful attacks
  • Contextual Risk Scores: Intelligent scoring that considers your application, users, and business context
  • Business Impact: Clear explanation of how the exploit affects your business
  • Remediation Guidance: Specific steps to fix exploited vulnerabilities
  • Retest Status: Automatic validation of whether vulnerabilities are still present
MindFort tests for 13 vulnerability categories including XSS, SQL Injection, Access Control issues, and more. See Platform Overview for the complete list.

Next Steps

Need Help?

  • Email Support: [email protected]
  • Platform: Use the in-app chat in the bottom right corner
  • Response Time: We typically respond within 2-4 hours during business hours