Getting Started¶
This section gets Faction running and walks through a first assessment end to end: schedule it, add findings, and generate the report. It takes about ten minutes and needs nothing beyond what Faction ships with.
- Running OWASP Faction — install it with one command or by hand, sign in, change the default password, and upgrade later.
- 1. Schedule an assessment — create the assessment from the Scheduling page, pick its type and dates, and let Faction attach the default report template.
- 2. Add findings and generate the report — add vulnerabilities from the built-in library, generate the report and preview it in the browser.
You are using the default report template
A fresh install downloads the default Faction pentest template on first start and attaches it to the Web Application Pentest assessment type, so the walkthrough works without any setup. It is a real, complete template, and it is also a starting point. When you are ready to put your own branding, structure and variables into the report, see Using DOCX Report Templates and User Defined Fields.