Using Fort AI
Overview
Fort AI is an AI-powered assistant built into every report in Fortworx. It can help you analyze reports, draft responses, update report attributes, and take actions — all through a conversational interface.
In this tutorial, you will learn how to:
- Open the AI Chat panel
- Ask questions about a report
- Use AI to take actions
- Understand the confirmation workflow
Opening the Chat Panel
To open the Fort AI chat panel, navigate to any report and click the AI chat icon. The chat panel opens as a side panel where you can have a conversation with Fort AI about the current report.
When you first open the chat panel, you’ll see example prompts to get started:
- “Summarize this report”
- “Draft a response”
- “Assess the severity”
Click any of these or type your own question.
What Fort AI Can Do
Fort AI has access to a set of tools that let it read report information and take actions on your behalf.
Analysis Actions
These actions retrieve information and don’t modify the report:
- Get report info — Retrieve the report’s subject, description, researcher details, severity, vulnerability type, and other attributes.
- Get report context — Get the full context including status, correspondence counts, and people involved.
- Get correspondence content — Read the content of a specific email in the report thread.
Modification Actions
These actions change the report and require your confirmation before executing:
- Compose response — Draft an email reply to the researcher. You can provide optional instructions for tone or specific points to address.
- Update status — Change the report status (e.g., to Accepted, Investigating, Resolved).
- Assign to user — Assign the report to a workspace team member.
- Mark as spam — Mark or unmark the report as spam. Marking as spam also sets the status to Can’t / Won’t Resolve.
- Archive report — Archive or unarchive the report.
Auto Actions
These actions execute automatically without requiring confirmation:
- Update severity — Change the report’s severity level.
- Update report analysis — Update severity, known CVE, vulnerability type, or area of concern using AI-powered matching.
- Update report info — Update basic report attributes like subject, description, or researcher details.
Confirmation Workflow
When Fort AI proposes an action that modifies your report (like changing a status or sending an email), it will ask for your confirmation before executing. You’ll see the proposed action with Approve and Reject buttons.
- Click Approve to execute the action.
- Click Reject to cancel it.
This human-in-the-loop approach ensures Fort AI never takes actions without your explicit approval for important changes.
AI Assessment
Beyond the chat assistant, Fort AI automatically generates an assessment when a report is first received. This assessment appears in the Fort Intelligence section on the report detail page and includes a summary of the reported issue along with suggested attributes.
You can request a reassessment at any time by clicking the Reassess button. Optionally, provide instructions to guide the reassessment (e.g., “focus on the authentication bypass aspect”).