For the complete documentation index, see llms.txt. This page is also available as Markdown.

Reports & Findings - Severities or counts differ from my scanner

Symptoms

  • The severity levels shown in Mobb don't match your SAST tool (for example, your scanner reports an issue as Critical but Mobb shows it as High).

  • The total number of issues, or the per-severity counts, differ between your scanner's report and the Mobb fix report.

Likely cause

Mobb standardizes issue names and severities across SAST providers so the same vulnerability class is presented consistently, regardless of which tool produced the report. Mobb also categorizes findings into Fixable, Irrelevant, and Remaining. Both behaviors mean Mobb's labels and per-bucket counts won't line up one-to-one with your scanner's raw report.

Resolution

  1. Hover over an issue name in the Fix Report to see the original issue name as reported by your SAST provider.

  2. Check the Fixable, Irrelevant, and Remaining tabs — counts in each bucket will not equal your scanner's raw totals (this is expected; see the FAQ).

  3. If a specific severity or mapping looks wrong for your context, contact support@mobb.ai with the issue details.

Still stuck? Contact support@mobb.ai.

Last updated