Skip to Content
Core ConceptsSecurity Scoring

Security Scoring

Inkog uses a consistent scoring system to help you understand the severity of findings and prioritize remediation.

Severity Levels

Each finding is assigned one of four severity levels:

SeverityDescription
CriticalImmediate exploitation possible, full system compromise
HighSignificant risk, exploitation likely
MediumModerate risk, exploitation requires specific conditions
LowMinor risk, limited impact

Security Grades

Your findings determine your security grade:

GradeStatus
AExcellent - No findings
BGood - Minor issues only
CModerate - Address soon
DNeeds Work - High priority
FCritical - Immediate action required

HTML Report Grades

The HTML output includes a visual grade badge:

┌─────────────────────────────┐ │ SECURITY GRADE │ │ │ │ ┌───┐ │ │ │ B │ │ │ └───┘ │ │ │ │ Status: PASSED │ └─────────────────────────────┘

Interpreting Results

Clean Scan (Grade A)

✓ Security scan complete Grade: A Findings: 0

Action: No immediate action needed. Consider periodic rescanning.

Minor Issues (Grade B)

⚠ Security scan complete Grade: B Findings: 3 low

Action: Address low-severity findings during regular maintenance.

Moderate Issues (Grade C)

⚠ Security scan complete Grade: C Findings: 1 high, 2 medium

Action: Prioritize high findings, schedule medium findings.

Serious Issues (Grade D/F)

✗ Security scan complete Grade: F Findings: 2 critical, 3 high

Action: Stop deployment. Address critical findings immediately.

Severity Filtering

Control which severities you want to see:

# Only show critical inkog -severity critical . # Show high and above (recommended for CI/CD) inkog -severity high . # Show all findings inkog -severity low .

See Security Gates for CI/CD configuration.

Last updated on