Skip to content

Audit Engine

The Audit Engine performs a deep, phased collection across your environment to produce auditor-grade evidence. Where a posture scan finds misconfigurations, the audit engine systematically gathers the artifacts that prove your controls’ state.

BenefitCapabilityBusiness value
EvidencePhased collection with stored artifactsHand auditors what they ask for
DepthDedicated audit collector checksGoes beyond pass/fail to documented state
BilingualEnglish and Hebrew audit reportsOne engine for global and Israeli audiences

The engine runs as a sequence of collection phases, each gathering a category of configuration and policy evidence (the audit profile drives a dedicated set of audit collector checks). Results are written in a structured, line-oriented format and turned into a formatted report.

You can run the audit standalone or alongside a scan via the Run Audit option on the New Scan form (it appears for the full and EVERYTHING profiles).

  1. On the New Scan form, enable Audit Collector (or run an audit-profile scan).
  2. Provide the audit scope (organization ID and any project prefixes).
  3. Launch and wait for the audit phases to complete.
  4. Download the report — available in English and Hebrew.
EndpointPurpose
POST /scans/{scan_id}/auditStart the audit for a scan (202 Accepted)
GET /scans/{scan_id}/audit/statusAudit progress
GET /scans/{scan_id}/audit/report/enEnglish report
GET /scans/{scan_id}/audit/report/heHebrew report
  • Scope the audit to the organization and prefixes that matter to the engagement.
  • Pair audit evidence with the CIS Benchmark for a compliance narrative.