Overview
The VulnZap dashboard provides a centralized view of your security posture, scan history, vulnerability findings, and team management. Access the dashboard at: vulnzap.com/dashboardMain Dashboard
Security Overview
The landing page displays your current security posture:
Projects Section
Managing Projects
View and manage all connected repositories:
Adding a Project
Pre-requisite Authenticate with GitHub and grant repository access -> settings1
Click 'Add Project'
Navigate to Projects → Add New Project
2
Select Repository
Choose from available repositories
3
Run Initial Scan
VulnZap performs an initial baseline scan
Project Details
Click any project to view detailed information: Tabs:- Overview
- Findings
- Scans
- Settings
- Risk score trend
- Vulnerability breakdown
- Recent scan history
- Quick actions (Scan Now, View Findings, Settings)
Scans Section
Scan History
View all scans across all projects:
Filters:
- Date range
- Project
- Scan type (inline, full repo, CI/CD)
- Status (completed, in progress, failed)
Scan Details
Click any scan to view detailed results: Information Displayed:- Scan metadata (timestamp, duration, files analyzed)
- Vulnerability summary
- File-by-file breakdown
- Patch recommendations
Comparing Scans
Compare two scans to see what changed:1
Select Base Scan
Choose the earlier scan as baseline
2
Select Comparison Scan
Choose the newer scan to compare
3
View Diff
See added, fixed, and unchanged vulnerabilities
Use scan comparison before deploying to ensure you haven’t introduced new vulnerabilities.
Findings Section
Vulnerability List
All detected vulnerabilities across all projects: Columns:- Severity (Critical, High, Medium, Low)
- Type (SQLi, XSS, Path Traversal, etc.)
- File and line number
- Status (Open, Fixed, False Positive, Ignored)
- Actions (View, Fix, Ignore)
Finding Details
Click any finding to view comprehensive information:- Overview
- Code Context
- Recommended Fix
- Learn More
Vulnerability Summary:
- Severity and OWASP classification
- CWE reference
- Exploitability score
- Affected code location
Bulk Actions
Handle multiple findings at once:- Select findings (checkbox or Ctrl+Click)
- Choose action:
- Fix All: Apply all recommended patches
- Mark as False Positive: Remove from active findings
- Ignore: Suppress warnings (with reason)
- Export: Download as CSV/JSON
- Assign: Assign to team member
API Keys Section
Managing API Keys
Create and manage programmatic access tokens:
Key Information:
- Key name and description
- Created date
- Last used timestamp
- Permissions scope
- Status (Active, Revoked)
Creating a New API Key
1
Click 'Create API Key'
Navigate to Settings → API Keys → Create
2
Configure Key
- Name: Descriptive identifier (e.g., “CI/CD Pipeline”)
- Description: Optional notes
- Scope: Full access or read-only
- Expiration: Never, 30 days, 90 days, 1 year
3
Copy Key
⚠️ Important: Copy the key immediately - it won’t be shown again
4
Store Securely
Store in environment variables or secrets manager, never in code
Revoking Keys
Immediately invalidate compromised keys:- Select the key
- Click “Revoke”
- Confirm action
- All requests with this key will fail immediately
Billing Section
Current Plan
View your subscription details:Usage Metrics
Track consumption across billing period: Charts:- Package scans per day
- Line scans per day
- API calls per day (paid plans)
- Storage usage
Upgrade Plan
Compare plans and upgrade:| Feature | Free | Standard | Scale | Enterprise |
|---|---|---|---|---|
| Package Scans | 5,000 | Unlimited | Unlimited | Unlimited |
| Line Scans | 10,000 | 100,000 | 500,000 | Unlimited |
| API Access | ❌ | ✅ | ✅ | ✅ |
| Retention | 7 days | 30 days | 90 days | 365 days |
| Support | Community | Priority | Phone + SLA | |
| Price | $0 | $19/seat/mo | $79/seat/mo | Custom |
Upgrade to Standard
Unlock unlimited package scans and API access
Team Management
Team features are available on Standard plans and above.
Team Members
Invite and manage team access: Roles:- Owner: Full access, billing management
- Admin: Full access, no billing
- Member: View and fix findings
- Read-only: View findings only
Audit Trail
View all team activity:Notifications
Configure alert preferences:Email Notifications
Email Notifications
- New Critical/High findings
- Scan completion
- Weekly summary reports
- Billing alerts
Slack Integration
Slack Integration
Post notifications to Slack channels:
Webhook Integration
Webhook Integration
Send events to custom endpoints: