Reports

Generate security reports from your scans to share with your team, include in documentation, or track remediation progress.

Overview

The VS Code extension can generate reports in multiple formats. For enterprise-grade reports with executive summaries, compliance documentation, and financial impact analysis, see the CLI tool.

3
Export Formats
1-Click
Generation
100%
Local

Quick Report

Generate a report from your most recent scan with a keyboard shortcut.

Ctrl+Shift+R
Generate Report
Creates report from last scan results
Or use the command palette:
Agnech: Generate Security Report

Export Formats

HTML

Interactive web report with filtering, search, and navigation.

Vulnerability chartsCode snippetsRemediation guidesPrint-ready

JSON

Structured data for integration with other tools and systems.

Full metadataLine numbersCWE referencesAPI-friendly

Markdown

Text-based report for GitHub issues, documentation, or wikis.

GitHub compatibleEasy editingVersion control friendly

Customization

Configure report generation in your VS Code settings.

settings.json
JSON
1{
2 "agnech.reports.defaultFormat": "html",
3 "agnech.reports.outputDirectory": "./security-reports",
4 "agnech.reports.includeRemediation": true,
5 "agnech.reports.includeCodeSnippets": true,
6 "agnech.reports.severityFilter": ["critical", "high", "medium"],
7 "agnech.reports.template": "default"
8}

defaultFormat

Set the default export format: html, json, or markdown

outputDirectory

Where to save generated reports. Defaults to workspace root.

severityFilter

Only include findings at or above these severity levels.

CLI ReportsEnterprise

The CLI tool provides 6 professional report formats designed for enterprise use.

Executive Summary
High-level overview for leadership
Technical Analysis
Detailed technical findings
Vulnerability Catalog
Complete vulnerability list
Remediation Roadmap
Prioritized fix plan
Compliance Report
SOC2, ISO 27001 mapping
Financial Impact
Risk quantification

Report Privacy

All reports are generated locally. No scan data or report content is ever sent to external servers.