Report Builder

The Report Builder lets you turn DefectDojo data into polished, shareable reports — executive summaries, compliance snapshots, POA&M packages, engineering detail, and more — for audiences inside and outside your security team.

Open source vs. DefectDojo Pro

How you build reports depends on which edition you run:

Open SourceDefectDojo Pro
Build a reportYes — assemble from widgetsYes — compose from reusable Blocks
Run and retrieve outputYes (HTML, print-to-PDF)Yes (saved PDF or HTML)
Save reusable Themes / Blocks / TemplatesNo — rebuild each timeYes
Persisted history of generated reportsNoYes — list, download, re-run
REST API + LLM automation—Yes — full create → run → download

In short: open source lets you build a report, run it, and export the result, but does not save templates or keep a report history. DefectDojo Pro turns reporting into reusable, brandable building blocks that you can drive from the UI, the REST API, or an LLM.

Where to go next

DefectDojo Pro

Open Source

Automating Reports With the API →

Create themes, blocks, and templates, then run reports and download results via the DefectDojo Pro REST API

Building Reports With an LLM →

Use Claude or another LLM to design, create, run, and download DefectDojo Pro reports via the API

Report Builder →

Build custom, reusable reports in DefectDojo Pro with Themes, Blocks, and Templates

Using the Report Builder →

Build, run, and retrieve a custom report in open-source DefectDojo