Using ScanSuite

Products

The folder every scan result and discovered asset is filed under.

Creating a product is an essential step before scanning. A product is the folder where scan results are stored and discovered assets are attached.

Creating a product

Give the new product a unique name. Specify the Git repository URL if you are planning to perform static code analysis — this is not mandatory, but it is useful during triage because findings then carry direct links to the offending lines.

The list of created products is available in the same Products menu:

ScanSuite products list
The products list

Product names are also used when saving scans and elsewhere in the interface, so give the product a sensible name — you will be looking for it later.

Opening the results

Clicking the product name opens that product's scan results in DefectDojo. See Working with scan results.

Deleting a product

Deletion is not limited to the product record

Clicking the trash bin deletes every scan for that product from Scan History, along with the product's scan results in DefectDojo. There is no undo.

How to organise products

There is no single right answer, but two habits pay off:

  • Separate products per scan type, or per group of related websites, keep result analysis and reporting simple later.
  • One product per repository makes vulnerability management counts meaningful, because findings correlate within a product.

Last reviewed 2026-08-16