Detected candidate
A scanner found a signal worth reviewing. Confidence can help prioritize it, but does not prove exploitability.
Methodology
LyraShield AI preserves scope, coverage, evidence provenance, and retest state as separate facts. It does not turn scanner confidence or missing evidence into a universal security verdict.
Last reviewed: · Maintained by LyraShield Security + Engineering
A scanner found a signal worth reviewing. Confidence can help prioritize it, but does not prove exploitability.
A separate verification receipt supports the finding. Engine confidence alone never creates this state.
A server-owned deterministic retest found the relevant condition absent after a fix, with complete applicable coverage.
The available retest evidence cannot establish that the condition is gone. The uncertainty remains visible.
Read the result in this order: confirm the authorized target and mode, inspect completed and limited coverage, separate detected candidates from independently verified findings, then read the retest receipt and retained limitations. A score or confidence value never replaces those facts.
For a broader catalog of web application verification requirements, consult the OWASP Application Security Verification Standard. This reference does not imply certification or full ASVS coverage.
The free tools run locally in your browser and state their limits.