Skip to main content
Help Getting Started
Getting Started

Understanding your security score

2 min read·1 views·100% found this helpful

Your security score is the at-a-glance indicator at the top of your dashboard that summarizes how well-protected your AI, API, and MCP traffic is right now. It rolls up signals from across your connected environment into a single number so you can tell your overall posture in one glance.

What the score represents

The score is a composite health measure, not a count of attacks. It reflects the current state of your protection rather than any single event. In general, it moves in response to signals like:

  • Threat activity — how many risky or malicious requests are being detected across your traffic, and whether they are being blocked.
  • Coverage — whether your sensors and connections are online and actively inspecting traffic.
  • Configuration — whether recommended protections and policies are enabled for your workspace.

A higher score means your environment is healthy and threats are being caught and stopped. A lower score is a prompt to look closer — usually at a gap in coverage or a spike in unblocked activity.

The score is a summary, not an alarm. For specifics on what changed, always open the underlying activity rather than reading the number alone.

How to read it

  1. 1.Open your dashboard — the score appears in the overview near the top.
  2. 2.Note the value and its direction since your last visit. A steady or rising score means things are healthy.
  3. 3.If the score drops, use the surrounding dashboard cards (recent threats, sensor status) to find the cause.
  4. 4.Take action on any offline sensor or newly detected threat, then recheck the score.

Why your score changes

Because the score reflects live conditions, it moves as your environment does. Common reasons for a change include:

  • A burst of blocked threats was detected and stopped — activity you want to review.
  • A sensor or connection went offline, reducing coverage until it reconnects.
  • A recommended protection was enabled or disabled in your settings.

A dip after enabling a new integration is normal while it warms up and coverage catches up. Give it a few minutes and recheck.

Improving your score

  • Keep every sensor and connection online so all traffic is inspected.
  • Review and resolve detected threats promptly.
  • Enable the recommended protections for your workspace.

For a full walkthrough of the dashboard, see Getting started with your dashboard.

Was this helpful?Still stuck? Submit a request →

Related articles