Assistant will provide an organization-scoped chat for security triage. It is planned to help teams find and understand assessment results without leaving Tahr.
#Planned capabilities
Assistant is expected to help review:
- Findings, severity, status, evidence, and recommended remediation.
- Completed assessments and what they covered.
- Authorization findings and matrix results.
- Attack paths and how related findings combine.
- Source Code and Recon results.
#What to use now
- Use Findings to review vulnerabilities, authorization results, attack paths, source-code risks, and recon findings.
- Use Threat Modeling for threats, assets, trust boundaries, and recommended mitigations.
- Use Reports for shareable output from supported completed assessments.
When Assistant becomes available, treat its answers as review aids rather than proof. Verify important details in the linked assessment records and keep secrets, credentials, and private customer data out of questions.