Projects and scans

Authorized assessments live in Workbench Projects and Scans. Start them from https://workbench.eresussec.com, not from a CLI scan tutorial.

Projects

A project is the unit of ownership. Inside it you keep authorized targets, scans, findings, HTTP records, OAST callbacks, module and extension selections, and exports.

Projects as the unit of ownership
Projects as the unit of ownership

A link discovered during an assessment is an observation. It does not expand project scope until an operator adds it deliberately.

Start an assessment

New Scan, SAST Scan, or Ingest from Workbench
New Scan, SAST Scan, or Ingest from Workbench

  1. Open the project
  2. Choose New Scan, SAST Scan, or Ingest depending on the input
  3. Confirm the authorized target or source, identities, modules, and exclusions
  4. Start the scan from Workbench
  5. Watch status on Dashboard or Active Scan
  6. Review results in Findings

There is no supported eresus-guard scan onboarding path.

During a scan

Use Workbench to inspect whether the scan is running, paused, or finished, how many records were processed, and whether findings are already available for triage.

Reconnect if the browser session drops. Reconnect restores the same screen.

After a scan

Open Scan History in the project. Re-run with the same project context only when the authorization still holds. Compare findings against the previous run before you export.

Scan history for re-run and export
Scan history for re-run and export

Need a workflow that is not documented here? Email contact@eresussec.com.