Skip to main content

Findings

Findings are everything HoundER discovers by scanning your assets, whether via continuous external scanning or a connected agent. Every finding type can be searched, filtered by detection date, and exported to CSV. Findings can also be commented on and, where applicable, have their status updated — status changes are also available through the API; comments are managed from the UI only.

Credentials​

Exposed credentials associated with your assets. Usernames and passwords are masked in both the UI and the API by default. Each credential has a status — Open, False Positive, or Closed — which you can update as you triage it.

Hosts​

Hosts resolving under your domain assets, plus hosts discovered within your netblock ranges. Each entry shows the IP address, source, ISP/organization, country, and detection times. Expand a host to see its full discovery chain and associated records.

Services​

Open ports and services detected on your hosts and netblocks. As with hosts, you get IP address, source, ISP/organization, country, and detection times, with the ability to expand each entry for details.

Vulnerabilities​

Vulnerabilities and misconfigurations detected across your hosts and services, using HoundER's curated set of checks. Each finding shows severity (Critical, High, Medium, Low, Info, or Unknown), the affected host, ISP/organization, country, and detection times. Severity and status are both editable as you work through remediation.

Websites​

Publicly accessible web services detected on your hosts and netblocks, including a screenshot where available. Shown alongside server, technology, ISP/organization, country, and detection times.

Comments​

Any finding can have comments added for tracking and collaboration — up to 50 per finding. Comments can be deleted by their author or an organization admin.