Review and act on Targets
Once a Campaign is running, the Target tab is where you track every entity in the Targeting funnel and act on the ones that need your attention.
For background on funnel statuses and how Targets advance, see Targeting.
Review and act on Targets
Open the Target tab
From the Targeting application, select the Target tab. The funnel at the top shows a live count of Targets at each status: Potential Targets, Targeted, Researched Targets, Vulnerable Targets, Compromised Targets, and Remediated Targets.

The count under Potential Targets reflects every asset that matched a Trigger across your active Packages. As Agents work through them, counts shift across the funnel in real time.
Open a Target and read the detail view
Click any status card to filter the list to Targets at that stage, then select a Target to open its detail view.

The Target detail view opens on the Overview tab, with Linked Objects and Reports tabs alongside it. The top of the view shows a one-line status summary reflecting what the last Agent found. A confirmed finding reads as something like “Confirmed RDP vulnerability on port 3389.” An inconclusive one reads as “Inconclusive validation, no fresh RDP evidence found.”
In the top-right corner, four controls are available:
- Status dropdown: Change the Target’s current status manually without waiting for Agent work to complete.
- Send to Operator: Open the Target and its full context in an Operator session to investigate manually.
- Copy link: Copy a direct link to this Target to share with teammates or include in documentation.
- Pop out: Open the Target in a new tab.
Below the header, the Process pipeline shows where the Target currently sits and what steps remain.

If an Agent session is currently running and you want to stop it, click Abort in the Target list.
Explore the Target's context
The Overview tab’s timeline shows how the Target was selected and what has run on it so far: the Selected for Targeting entry names the Rules of Engagement and Target Package that selected it, and each subsequent entry records an Agent run.
Open the full Object details
Next to the Targeted Object, click View all details to open its full properties panel.

The Object’s own panel opens with Overview, Targets, Findings, and Sources tabs. The Overview tab shows the Object’s properties, such as Environment and Application Version, along with first- and last-seen timestamps, any tags associated with the Object, a comments field, and a graph of related Objects.

The Findings tab lists any Findings related to this Object that Method has found in the Environment. Review this to understand the broader risk picture around the targeted Object before deciding how to proceed.

The Sources tab shows how each of the Object’s properties was discovered. Select a property to see the Tool’s raw JSON output, or switch to the Steps or Tool Output views for the GUI-level record of how the Tool found and characterized it.

Use the Linked Objects tab without leaving the Target
The Target’s own Linked Objects tab shows the same Object details, properties, and related Findings inline, so you don’t need to open the full panel to get an overview. It also includes a Generate action for producing Finding reproducibility information and Object raw signal on demand.

Review Agent findings
Any Agents that have run on this Target are listed in the Overview tab’s timeline. Click an Agent run to open its session. The Conversation tab shows the Agent’s full reasoning: the context it was given, the tool calls it made, the Objects it loaded, and the conclusion it reached. The Details tab shows the Agent’s configuration for that run, including its type, model, Targets, and the MCP Tools it had access to.


For the full recorded output, select the Target’s Reports tab. Each Agent that ran on the Target generates a Report there. Reports are grouped by Agent type (Research, Pentest, Compromise) and titled with the outcome and confirmation status. The Report body is broken into three sections:
- Summary: A short account of what the Agent found and what it concluded.
- Reasoning: The Agent’s step-by-step logic for how it reached its conclusion.
- Evidence: The specific data, tool outputs, and observations the Agent used to support its finding.

Act on Targets at Rules of Engagement gates
When a Target reaches a status where your Rules of Engagement require approval, it appears in the Required input group. Review the Agent’s findings in the detail view and Reports tab before deciding.
At Researched
Click the Researched Targets status card to see Targets where Research has completed and input is required.


Click Configure Pentest Agent to allow the Agent to continue to pentesting, or Stop here to hold the Target at Researched.
At Vulnerable
Click the Vulnerable Targets status card. Targets in Required input have hit a Rules of Engagement gate before Compromise.

Select a Target and click Proceed to authorize Compromise, or Abort to stop the Agent. After proceeding, the Target moves out of Required input and into In progress.
Use the status groups in the left rail to track where Targets sit: Required input, In progress, Exhausted, and Blocked. Select a group to filter the list to Targets in that state.

Send a Target to an Agent manually
From the Continue section at the bottom of any Target’s Overview tab, you can route the Target to a specific Agent without waiting for the automated pipeline.

- Send to Research Agent: run or re-run Research
- Send to Pentest Agent: escalate directly to pentesting
- Send to Compromise Agent: escalate to Compromise
- Send to Operator: open the Target in Operator for manual investigation
Understand blocked Targets
A blocked Target is waiting on input beyond a standard Rules of Engagement approval. The Agent may have hit an ambiguous finding, lacked enough context to continue, or reached a point where it needs human direction.
Open the Target’s detail view, select the Reports tab, and open the Blocked Report. The Report explains what the Agent found, why it stopped, and what evidence it reviewed.

In the example above, the Agent could not resolve the target host from its vantage point and had insufficient evidence to reach a conclusive verdict. A reasonable next step is to confirm the host is reachable from another vantage, or send the Target to an Operator for manual investigation.
Mark Targets as Remediated or Deferred
Once you address a Target’s security concern, move it to Remediated to close it out.
If the concern is real but not immediately fixable, move it to Deferred. Common reasons to defer:
- The asset is owned by a third party and remediation requires external coordination
- A vendor patch is pending and no workaround is available
- You reviewed the risk and consciously accepted it for a defined period
- Operational constraints prevent remediation right now
Deferred Targets remain tracked in the funnel. They are not closed: they are set aside with the expectation of revisiting them. When circumstances change, move a Deferred Target back into the active pipeline or close it as Remediated.
Next steps
- Start a new Campaign: deploy Packages and populate the funnel
- Build a custom Package: define Triggers, Agents, and Rules of Engagement
- Targeting: reference for all funnel statuses and configuration