Inventory
The Inventory page is the primary interface for browsing all discovered cryptographic assets. Every certificate, key, algorithm usage, protocol, and signature found by any scanner appears here.
Asset Type Tabs
Section titled “Asset Type Tabs”A tab bar at the top filters by asset type:
| Tab | What It Shows |
|---|---|
| All | Every asset across all types |
| Certificates | X.509 certificates from endpoints, files, keystores, AD |
| Private Keys | RSA, EC, Ed25519 private keys |
| Public Keys | Standalone public keys |
| Symmetric Keys | AES, ChaCha20 keys |
| Signatures | Code signatures (Authenticode, JAR) |
| Source Code | Crypto API usage detected in source code |
Each tab shows a count badge. The right side shows total result count, export buttons, and a relationship rebuild trigger.
Search and Filters
Section titled “Search and Filters”A compact filter bar supports:
- Full-text search — matches name, algorithm, subject, fingerprint, and other fields
- Risk Level — CRITICAL, HIGH, MEDIUM, LOW, NONE
- Algorithm — filter by algorithm name (RSA, EC, AES, etc.)
- Scanner — filter by scanner type that discovered the asset
- Sensor — filter by which sensor found it
Certificate-specific Filters
Section titled “Certificate-specific Filters”When the Certificates tab is active:
- Expiry — Expired, < 7 days, < 30 days, < 90 days, Valid
- CA/EE — CA Only, End-Entity, Self-Signed
Source Code-specific Filters
Section titled “Source Code-specific Filters”When the Source Code tab is active:
- Language — Java, Python, Go, JavaScript, TypeScript, C#
Saved Searches
Section titled “Saved Searches”Save frequently-used filter combinations for quick access. Saved searches appear as clickable chips below the filter bar.
Asset Table
Section titled “Asset Table”The table shows key columns per asset type. Clicking any row opens the detail panel.
Asset Detail Panel
Section titled “Asset Detail Panel”A slide-in panel from the right showing complete asset information:
Header
Section titled “Header”- Asset name, type badge, risk level badge
Core Properties
Section titled “Core Properties”- Algorithm, key size, fingerprint
- Key Pair Fingerprint (clickable — shows all assets sharing the same key pair)
Certificate Details (certificates only)
Section titled “Certificate Details (certificates only)”- Subject, Issuer, Serial Number
- Valid From / Valid Until (with expiry warning)
- Signature Algorithm
- Issuer Certificate Fingerprint
- CA status, Self-Signed status
Key Details (keys only)
Section titled “Key Details (keys only)”- Key format, key purpose
- Lifecycle state
Discovery Locations
Section titled “Discovery Locations”- Target URI, scanner type, hostname, sensor name, discovered timestamp
Scanner Metadata
Section titled “Scanner Metadata”- Custom metadata attached by the scanner (context labels, source info)
Relationships
Section titled “Relationships”- Visual tree showing:
- Issuer chain (which CA issued this certificate)
- Key pair members (linked private key, public key, certificate)
- Issued certificates (what this CA has signed)
Export
Section titled “Export”Two export options available from the tab bar:
- JSON — raw asset data for custom processing
- CDX — CycloneDX v1.6 CBOM export of the current filtered view
Related
Section titled “Related”- Dashboard — Risk overview and analytics
- Import/Export — Full import/export capabilities
- Compliance — Evaluate assets against policies