Engagement Summary Report Download

Overview

The Engagement Summary gives you a complete snapshot of an engagement — covering scope, vulnerabilities, team efforts, and more. Use it to track assessment progress at a glance and export detailed reports when you need to share findings with stakeholders.


Sections of the Engagement Summary

1. Summary

A free-text field where any user with access to the engagement can write or update a narrative summary. Use this to capture the purpose of the engagement, key observations, or any context that isn't captured in the structured data below.


2. Scope

Displays all assets included in the engagement's scope.

For each asset, you can see:

  • Assessment status — the current state of testing for that asset
  • Start date and End date — the testing window for each assessment
  • Hours spent — the number of hours logged against each assessment
  • Team members — the testers assigned to each asset

3. Overview

A visual breakdown of all vulnerabilities reported in the engagement, split two ways:

By Severity:

Severity

Description

Critical

Highest risk — requires immediate attention

High

Significant risk — prioritize remediation

Medium

Moderate risk — address within standard SLA

Low

Minor risk — remediate as capacity allows

Info

Informational — no direct risk, noted for awareness

By State:

State

Description

Open

Vulnerability has been identified and is not yet resolved

Closed

Vulnerability has been remediated or accepted


4. OWASP Classification

Displays how reported vulnerabilities map to OWASP categories. For each OWASP category present in the engagement, you can see the total number of vulnerabilities and how many are open versus closed. This is useful for identifying patterns and demonstrating coverage against a recognized security framework.


5. Vulnerability Details

A complete list of every vulnerability reported in the engagement.

Use this section to review individual findings, check their severity and state, and drill into the details of specific issues.


Downloading the Engagement Summary Report

You can generate and download the Engagement Summary as a report at any time.

Step 1 — Open the Engagement Summary

Navigate to the Engagements page and click View Summary on the engagement you want to export.


Step 2 — Generate the Report

Click Download. Strobes begins generating the engagement summary report in the background.


Step 3 — Include Logged Hours (Optional)

If you want the report to include time tracking data, select Include logged hours to the report before confirming the download. This adds the hours logged per assessment to the exported document.


Step 4 — Access the Report

Navigate to the Reports tab within the same engagement. The generated report appears in the list.

Click Download to save it to your computer.


Tips

Keep the Summary field up to date. The free-text summary is often the first thing a stakeholder reads. Updating it as the engagement progresses — noting key findings or delays — saves time when it comes to writing the final report.

Use the OWASP Classification section for framework reporting. If your organization needs to report against OWASP coverage, this section gives you the data you need without any manual cross-referencing.

Include logged hours for client-facing reports. The hours logged per assessment can help justify effort and scope, particularly for managed service engagements where clients expect transparency on time spent.

Download the report after all findings are closed. For the most complete picture, generate the final summary report after the remediation round is complete so the vulnerability state counts reflect the current posture.