{
"success": true,
"data": {
"audit": {
"id": "audit_abc123",
"status": "completed",
"type": "deep",
"domain": "acme.example.com",
"targets": ["acme.example.com"],
"findingCount": 23,
"score": 65,
"grade": "D",
"severityBreakdown": {
"critical": 1,
"high": 2,
"medium": 8,
"low": 11,
"informational": 1
},
"findings": [
{
"id": "finding_001",
"severity": "critical",
"category": "rce",
"title": "Authenticated RCE via deserialization endpoint",
"description": "POST /api/internal/jobs accepts Java-serialized payloads...",
"evidence": "$ curl -X POST ... [full shell output] ...",
"recommendation": "Disable Java deserialization on /api/internal/jobs...",
"screenshotUrl": "https://...",
"discoveredAt": "2026-05-18T13:14:22.000Z"
}
],
"createdAt": "2026-05-18T12:00:00.000Z",
"startedAt": "2026-05-18T12:00:35.000Z",
"completedAt": "2026-05-18T14:02:00.000Z"
}
}
}