Discovery

Read a discovery run report

Every run has its own page. It shows the run live while it works, then the rating and findings when it finishes. The same page also appears under Security Posture when you open a domain's rating.

Open a run

  • From Discoveries, select a row in Runs, or select a schedule and then one of its runs.
  • From the message after you start a run, select Open the run.
  • From a domain's rating, select the run in the rating history.

The top of the page

Element What it shows
Title and subtitle The target, then the type (Domain, Host, IP address, Email, URL or Network), the detective and the start time
Status chip Running, Paused, Completed, Stopped or Failed
Facts How long it took, and the number of checks, executions, failures, checks not run, and credits
Grade The rating for this run, marked provisional until the run finishes
Run switcher Move to the previous or next run, or choose one from the list

Actions:

Action What it does
Run again Starts the same discovery again
Pause and Resume Holds new checks, or continues
Stop run Skips checks not yet started, keeps finished work and rates the run from it. Asks you to confirm.
Refresh Reloads now. The page also refreshes every 10 seconds while a run is live.
Repeat Off, Daily, Weekly or Monthly. Only for runs that belong to a schedule. Repeats use credits and Hunto asks you to confirm.
Report (PDF) Creates a report for domain targets. Available once the run has finished.

Banners you may see

  • "A newer outside-in rating exists from [date]." A more recent rating supersedes this run's grade.
  • "This run measures fewer sections, so it has its own rating and does not replace this one." A run of a narrower detective does not overwrite your standard rating.

Tabs

Tab Use it to
Overview See the grade, sections, top issues and what changed
Findings List every result and add the ones that matter to detections
Footprint See the inventory the run found
Changes See what is new, gone or changed since the previous run. Hidden on the first run.
History See the rating over time. Only when you open the page from a domain's rating.

Overview

  • The Rating card shows the grade. While the run is live it says "Rated when the run finishes." How is this calculated? opens the explanation.
  • "N of the M checks in this run feed the rating; the rest are listed in Findings."
  • "Since the previous run: X new, Y gone, Z changed" with See changes. On the first run it says "First run of this discovery: nothing to compare with yet."
  • Sections shows one tile per part of the rating. A section that could not be measured says Not measured. It is never shown as clean.
  • Top issues lists the five biggest point deductions, with See all N.

Findings

Toggle between By rating and Raw results.

Control Use
Chips All, Counted, Context, Not a rating check Counted results affect the grade. Context results add detail but do not.
Search results Search title, host, check, section or reason
Filters: Section, Check, Severity, Classification Narrow the list
In detections link Opens the detection that a result was already promoted to

Select a row to read it in a side pane, with Previous and Next.

To act on results, see Findings, potential detections and triage.

Footprint

Hosts, IP addresses, services, certificates, technologies, name servers, mail servers, network ranges and ASNs the run found, each with the check that found it.

Changes

Compares this run with the previous completed run of the same schedule. Chips: All, New, Gone, Changed. If nothing moved it says "No changes. The two runs saw the same things."

Note: Gone may only mean a source timed out. Confirm before you treat something as fixed. Only findings already added to detections are compared, so a change may be under-counted until you add findings.

History

Shows the rating over time, with each run's grade, change and the issues that appeared or were fixed. If there is none it says "No history yet". Each run that can rate the domain adds a point.

A domain with no rating

If a domain shows Not rated, select Rate now. Hunto shows the credit cost and asks you to confirm, then runs Outside-in rating. Choose checks opens the run window instead.

Use cases and wiring tips

  • Onboard a domain baseline. Open the first run, note the grade and the Top issues, and record them as your baseline.
  • Watch a score dip. Compare two runs with the Run switcher, then open Changes on the newer one.
  • Share a result. Use Report (PDF) for a domain, or tick runs in Runs and select Create report.
  • Wiring. In detections links a result to the detection record. Open detections goes to the detections list. The grade appears on Security Posture.