Read a discovery run report
Every run has its own page. It shows the run live while it works, then the rating and findings when it finishes. The same page also appears under Security Posture when you open a domain's rating.
Open a run
- From Discoveries, select a row in Runs, or select a schedule and then one of its runs.
- From the message after you start a run, select Open the run.
- From a domain's rating, select the run in the rating history.
The top of the page
| Element | What it shows |
|---|---|
| Title and subtitle | The target, then the type (Domain, Host, IP address, Email, URL or Network), the detective and the start time |
| Status chip | Running, Paused, Completed, Stopped or Failed |
| Facts | How long it took, and the number of checks, executions, failures, checks not run, and credits |
| Grade | The rating for this run, marked provisional until the run finishes |
| Run switcher | Move to the previous or next run, or choose one from the list |
Actions:
| Action | What it does |
|---|---|
| Run again | Starts the same discovery again |
| Pause and Resume | Holds new checks, or continues |
| Stop run | Skips checks not yet started, keeps finished work and rates the run from it. Asks you to confirm. |
| Refresh | Reloads now. The page also refreshes every 10 seconds while a run is live. |
| Repeat | Off, Daily, Weekly or Monthly. Only for runs that belong to a schedule. Repeats use credits and Hunto asks you to confirm. |
| Report (PDF) | Creates a report for domain targets. Available once the run has finished. |
Banners you may see
- "A newer outside-in rating exists from [date]." A more recent rating supersedes this run's grade.
- "This run measures fewer sections, so it has its own rating and does not replace this one." A run of a narrower detective does not overwrite your standard rating.
Tabs
| Tab | Use it to |
|---|---|
| Overview | See the grade, sections, top issues and what changed |
| Findings | List every result and add the ones that matter to detections |
| Footprint | See the inventory the run found |
| Changes | See what is new, gone or changed since the previous run. Hidden on the first run. |
| History | See the rating over time. Only when you open the page from a domain's rating. |
Overview
- The Rating card shows the grade. While the run is live it says "Rated when the run finishes." How is this calculated? opens the explanation.
- "N of the M checks in this run feed the rating; the rest are listed in Findings."
- "Since the previous run: X new, Y gone, Z changed" with See changes. On the first run it says "First run of this discovery: nothing to compare with yet."
- Sections shows one tile per part of the rating. A section that could not be measured says Not measured. It is never shown as clean.
- Top issues lists the five biggest point deductions, with See all N.
Findings
Toggle between By rating and Raw results.
| Control | Use |
|---|---|
| Chips All, Counted, Context, Not a rating check | Counted results affect the grade. Context results add detail but do not. |
| Search results | Search title, host, check, section or reason |
| Filters: Section, Check, Severity, Classification | Narrow the list |
| In detections link | Opens the detection that a result was already promoted to |
Select a row to read it in a side pane, with Previous and Next.
To act on results, see Findings, potential detections and triage.
Footprint
Hosts, IP addresses, services, certificates, technologies, name servers, mail servers, network ranges and ASNs the run found, each with the check that found it.
Changes
Compares this run with the previous completed run of the same schedule. Chips: All, New, Gone, Changed. If nothing moved it says "No changes. The two runs saw the same things."
Note: Gone may only mean a source timed out. Confirm before you treat something as fixed. Only findings already added to detections are compared, so a change may be under-counted until you add findings.
History
Shows the rating over time, with each run's grade, change and the issues that appeared or were fixed. If there is none it says "No history yet". Each run that can rate the domain adds a point.
A domain with no rating
If a domain shows Not rated, select Rate now. Hunto shows the credit cost and asks you to confirm, then runs Outside-in rating. Choose checks opens the run window instead.
Use cases and wiring tips
- Onboard a domain baseline. Open the first run, note the grade and the Top issues, and record them as your baseline.
- Watch a score dip. Compare two runs with the Run switcher, then open Changes on the newer one.
- Share a result. Use Report (PDF) for a domain, or tick runs in Runs and select Create report.
- Wiring. In detections links a result to the detection record. Open detections goes to the detections list. The grade appears on Security Posture.