Reading detections and AI verdicts
Every detection gets a plain-English verdict the moment it lands.
- 1The Detections page lists everything the engines caught, filterable by severity, status, and free text.
- 2Open any detection for the full record: file path, hash, process, user, and what the engine already did.
- 3The AI verdict explains what the detection means, how serious it is, whether it's already contained, and the next step to take.
- 4Response buttons on the detection page act on that device directly: isolate, kill the process, quarantine the file, or launch a scan. A lost or stolen device can be remote-wiped from its device page (Growth plans and up).
- 5Work the queue with statuses: Acknowledge what you've seen, Close what's resolved. Closed detections stay for the 365-day history.