Skip to content

AI Assessments ​

An AI assessment organizes security review within a project. An AI run is one execution of that assessment: it has a selected profile, scope, operating mode, budget, progress, and results. A project can have several runs so your team can compare observations, review changes, and follow remediation over time.

AI assessment workspace

Screenshots use fictional demonstration data.

Understand the available run types ​

Four choices describe different aspects of a run. Choosing one does not automatically choose the others.

ChoiceWhat it determinesExamples
Interaction modeHow the operator participatesAutomatic, Assisted, Checklist
Assessment intentThe breadth and depth of the reviewLightweight, Balanced, Deep, Continuous
Execution locationHow the assessment reaches its environmentPlatform-managed access, local/private-network access
Assessment purposeWhat outcome the team wants to evaluateSecurity findings, remediation review, purple team validation through a plugin

AI Runs explains these choices, prerequisites, budgets, progress, results, and review in detail. Run Modes shows the controls and how to start an assessment.

Automatic, Assisted, and Checklist ​

Automatic follows the configured profile without continuous operator chat. Assisted lets a provider operator guide the review through chat. Checklist organizes the work around a selected list and records item coverage. Availability depends on the organization, project permissions, and configured profiles and checklists.

Clients normally use automatic runs when their provider enables them for the project. Provider controls and client controls can differ. See Automatic Assessments and AI Runs.

Local runs ​

A private environment can require local access through a project connector. This describes connectivity to the environment, rather than another interaction mode. A connected relay and an authorized scope are separate requirements. See Local Runs for readiness, responsibilities, and result interpretation.

Purple team runs through a plugin ​

When enabled for your organization, a plugin can support coordinated validation of defensive controls. The team reviews whether the intended behavior occurred, whether relevant telemetry was available, and whether detection and response worked as expected. See Purple Team Runs for the purpose, roles, result categories, and review process.

Review the results ​

Progress and generated observations do not replace human review. A finished run can contain candidate findings, incomplete coverage, or blocked work. Review the evidence, accept or reject candidates, merge duplicates when appropriate, and track accepted findings through the project's issue workflow.

TopicPurpose
Agent TypesProfiles available for the project's category
ChecklistsRepeatable review objectives and item coverage
ConnectorsConnectivity to private environments
Knowledge BaseReference material and engagement context
Credits & BillingAvailable credits and budget management
SchedulesRecurring AI assessments where available

Hashiro. Continuous Threat Exposure Management.