Skip to content

Review scan results

Open a scan from the scan list to review:

  • Report: Executive and technical summaries, available for download as Markdown or PDF.
  • Details: File-level results produced by the analysis.
  • Questions: Ask AI follow-up questions grounded in the scan results. You can also send questions to an organization administrator.

Preparing AI means Abyss is building the index used for questions. The report may be available first. If AI preparation failed, any completed report remains available.

Filter vulnerabilities by severity, application, platform, status, priority, owner, and other fields. Open a vulnerability to review its impact and summary, evidence, remediation guidance, and detection history.

Static analysis does not always prove runtime reachability or server-side controls. Do not judge a result by severity alone. Review the evidence, affected files, attack conditions, required privileges, user interaction, and scope of impact.

See Manage vulnerabilities for the remediation workflow. If you decide not to fix an issue, see Request and approve risk exceptions.

The scan list shows the security policy decision applied to each result. The decision considers more than the total vulnerability count: it can evaluate current Critical and High issues, new and recurring issues, severity increases, and expired exceptions.

See Security gate for details.

From a standard scan, you can request advanced analysis that combines static and dynamic techniques. Share focus areas, test accounts, credentials, and reference materials through notes and attachments. The displayed credits are charged when the request is submitted, and work begins after an analyst accepts it.