Skip to main content
Neo automates vulnerability review by assessing exploitability, contextualizing findings against your environment, and triaging by actual risk. Instead of drowning in scanner output or vendor advisories, you get focused, actionable intelligence with evidence and remediation guidance.

How it works

  1. Ingest findings: Neo pulls vulnerability reports from Linear, Jira, scanners, or advisories
  2. Contextualize: it correlates findings with your asset inventory, technology stack, and prior history retrieved from Memory
  3. Assess exploitability: Neo researches public exploits, PoCs, and conditions required for exploitation
  4. Prioritize: it scores findings by actual risk (exposure, exploitability, impact) rather than raw CVSS
  5. Generate tickets: Neo creates or updates tickets with context, reproduction steps, and remediation guidance

Prerequisites

  • Jira or Linear integration configured in Environment Variables
  • Asset inventory or prior scan results in Files (optional but improves context)
  • Internet access for public exploit and PoC research

Usage

Prompt example: “Review all critical vulnerabilities from last week’s scan. For each, determine if we’re actually exposed, research known exploits, and update Jira tickets with exploitability assessment and remediation priority.” What Neo does:
  • Retrieves scan results from Files or ticket system
  • Cross-references against your stack and environment
  • Searches for public PoCs and exploit code
  • Updates tickets with enriched context and triage decisions
  • Links evidence and citations back to sources

Examples

  • Triaging CVE advisories: “Review CVE-2024-12345. Are we running the affected version? Is there a public exploit? Update the ticket with findings.”
  • Backlog cleanup: “Review open ‘medium’ vulns from Q3. Close false positives, escalate real risks, and summarize changes.”
  • Post-scan workflow: “Ingest the latest Nuclei scan. Filter noise, verify exploitability for high-severity items, and create tickets for confirmed risks.”