Skip to main content
Create comprehensive security reports for stakeholders, auditors, and compliance.

Generate a Report

1

Navigate to Reports

Organization or RepositoryReports
2

Create New Report

Click Generate Report
3

Configure Report

Set report parameters:
  • Scope: Organization or specific repositories
  • Time period: Date range to include
  • Severity filter: Which severities to include
  • Type filter: SAST, AGENTIC_SAST, SCA, SECRET, IAC
  • Status filter: OPEN, FIXED, FALSE_POSITIVE, ACCEPTED_RISK
4

Choose Format

Select report format:
  • PDF (stakeholder-friendly)
  • CSV (data analysis)
  • JSON (programmatic access)
5

Generate

Click Generate ReportReport typically ready within 1-2 minutes

Report Contents

Executive Summary

  • Security score and trend
  • Total violations by severity
  • Critical findings requiring attention
  • Progress since last report

Detailed Findings

For each violation:
  • Title and description
  • Severity and CVSS/EPSS scores
  • Location (file, line number)
  • Status (OPEN/FIXED/FALSE_POSITIVE/ACCEPTED_RISK)
  • Remediation guidance
  • Violation count over time
  • Security score trend
  • Fix rate metrics
  • Top vulnerability types
  • Most affected repositories

Compliance Section

  • Standards compliance (OWASP Top 10, CWE Top 25)
  • Audit trail
  • Risk assessment
  • Remediation timeline

Sharing Reports

Public Reports

Make reports publicly accessible:
1

Open Report

Navigate to generated report
2

Make Public

Click ShareMake Public
3

Copy Link

Copy the unique public URL
4

Share

Share URL with stakeholders
Public reports are accessible to anyone with the URL. Don’t include sensitive information.

Scheduled Reports

Automate report generation and delivery:
1

Create Report Template

Set up report with desired configuration
2

Schedule

SettingsScheduled ReportsCreate Schedule
3

Configure Schedule

  • Frequency: Daily, weekly, monthly
  • Recipients: Email addresses
  • Format: PDF, CSV
4

Activate

Save and activate schedule

Report Templates

Pre-configured report templates: Executive Summary:
  • High-level overview
  • Trend analysis
  • Critical issues only
Compliance Report:
  • Audit-ready format
  • Standards compliance
  • Detailed findings
  • Remediation status
Team Report:
  • Team-specific violations
  • Individual contributions
  • Fix velocity
Release Report:
  • Pre-release security assessment
  • Open violations
  • Risk assessment

Best Practices

Regular reporting: Generate reports weekly or monthly Executive summaries: Include for non-technical stakeholders Highlight trends: Show progress, not just snapshots Include remediation: Document what’s being fixed Version control: Archive reports for historical reference Automate: Use scheduled reports for consistency

What’s Next?