> ## Documentation Index
> Fetch the complete documentation index at: https://docs.infrawatch.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Reports

> Search published security reporting and pivot through extracted indicators

Infrawatch Reports brings published threat and security research into the same
investigation workflow as hosts, services, and DNS. Search the reporting
collection directly or pivot to it from an IP address.

## What Reports gives you

* **Published reporting** - Description, source, publication date, update date,
  and validated report URL.
* **Indicator pivots** - Find reports associated with an IP and retrieve the
  indicators extracted from a report.
* **Source and date filters** - Narrow reporting by publisher or time window.
* **Search integration** - Use the OSINT search dataset when the report itself
  is the result you need.

## Start an investigation

```text theme={null}
ip:1.1.1.1
```

The OSINT search returns reports associated with the address. The Reports API
also supports report discovery, facets, and extracted indicators.

<CardGroup cols={2}>
  <Card title="Investigate an IP" icon="https://mintcdn.com/infrawatch/hFIgmGIh7O3VGQHG/images/products/investigate.svg?fit=max&auto=format&n=hFIgmGIh7O3VGQHG&q=85&s=07af7d2d72ee29e21a6f8df34da95847" href="/use-cases/investigate-an-ip" width="32" height="32" data-path="images/products/investigate.svg">
    Move from host and DNS evidence to related reporting.
  </Card>

  <Card title="Browse report fields" icon="https://mintcdn.com/infrawatch/gCEz_Bv1hOrMPG8n/images/products/data-dictionary.svg?fit=max&auto=format&n=gCEz_Bv1hOrMPG8n&q=85&s=7610d618bf3603732c6f9102b62101df" href="/data-dictionary/osint" width="32" height="32" data-path="images/products/data-dictionary.svg">
    Inspect the public OSINT search shape.
  </Card>
</CardGroup>
