> For the complete documentation index, see [llms.txt](https://docs.bfore.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.bfore.ai/docs/console/platform-overview.md).

# PreCrime Platform overview (dashboard)

The **PreCrime Platform overview** is your landing page after login. It summarizes brand-protection activity for the selected company over a chosen time period, giving you a single view of how PreCrime is actively protecting your brand - from the threats identified and disrupted, to the financial impact and victims averted - so you can see the tangible value of your protection at a glance.

Use the date range picker in the top right to change the period (default: last 30 days). Most figures show a percentage change against the previous equivalent period - hover over it to see the compared dates.

## Widgets

### Activity

A funnel of what PreCrime identified and acted on, telling the story of a threat's full lifecycle: from the volume of infrastructure and potential threats PreCrime analyzes, down to the confirmed attacks targeting your brand, the takedowns filed against them, and the ones successfully resolved.

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FSoyF9bASu4qOsd1PiP86%2Fimage.png?alt=media&amp;token=b7b09dd6-ae61-4b1d-ae51-f22b12b1a1d4" alt=""><figcaption></figcaption></figure>

* **Predicted attacks** - the number of malicious domains PreCrime has identified and predicted overall, across the internet - not limited to attacks targeting your brand specifically, reflecting the scale of PreCrime's predictive engine at work, with results shared via the PreCrime Intelligence API and feeds.
* **False positives avoided** - the number of potential threats targeting your brand that PreCrime identifies and processes.
* **Targeted attacks - disruption active** - of that volume, the threats confirmed as real attacks against your brand, now under active disruption. This counts only PreCrime-discovered threats, not domains customers reported themselves.
* **Takedowns initiated** - takedown requests filed specifically against those PreCrime-discovered attacks (excluding takedowns requested on domains customers reported that PreCrime did not identify itself).
* **Successful takedowns** - of those, the ones that were completed and fully resolved.

The **Predicted attacks** counter shows the number of predictions completed and shared via the PreCrime Intelligence API and feeds, reflecting threats PreCrime's models acted on before an attack was even launched.

### Monitored assets

The total number of assets monitored by PreCrime during the selected period. This includes any asset that was in active monitoring status, regardless of monitoring duration or when the monitoring started.

### Averted losses

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2F9seZxw3XFFaOqKHb590U%2Fimage.png?alt=media&amp;token=245c55ca-0529-4547-937b-2f880b22bc0c" alt=""><figcaption></figcaption></figure>

Two financial figures:

* **Attack costs prevented** - estimated financial losses prevented by stopping attacks before they could cause damage. It is the number of takedowns completed in the period, multiplied by your organization's cost-per-attack value (defaults to $200,000 per attack, and can be customized for your organization). This represents the estimated financial losses prevented by successfully removing attacks.
* **Operational costs avoided** - This represents the estimated savings from automated threat prevention, compared to your security team manually identifying and addressing these threats. It is the number of threats identified against your monitored assets in the period, multiplied by an internal estimated cost per threat.

### Monitoring activity

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FHnlWqyXwdniHjlSxAQV5%2Fimage.png?alt=media&amp;token=356f72aa-784a-49d4-9939-a3a7c44b3d6f" alt=""><figcaption></figcaption></figure>

Three counters:

* **Disrupted attacks** - attacks discovered and disrupted through PreCrime's disruption partner network.
* **Trademarks** - domains identified that misuse your organization's trademarks so you can see where your brand is being actively exploited and pursue enforcement action.
* **Owned domains** - legitimate domains that PreCrime identified as associated with your organization, helping you maintain a complete and accurate view of your own domain footprint.

### Averted victims

The total number of victims averted across all attacks targeting your brands. Each averted victim represents a person or system stopped from reaching a site impersonating your brand, preventing potential phishing, fraud, or malware exposure, and protecting your brand's reputation and the trust your audience places in it.

### Takedown overview

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FdxAg8IiXqFkRAS9n68L6%2Fimage.png?alt=media&amp;token=18c7273b-d73d-48b5-8ba1-42164bed7c16" alt=""><figcaption></figcaption></figure>

Takedown performance for the period: **Completed** and **Ongoing** counts show how much of the threat activity targeting your brand has already been resolved versus still being actively worked. The **Median time** to neutralize attacks reflects how quickly a threat is removed once a takedown begins - the shorter this window, the less time an attack had to reach and harm your customers (shown in hours when under 4 days, otherwise in days). The "See latest takedowns" link opens the [Takedowns page](/docs/console/takedowns-list.md). Note: This covers all PreCrime Platform supported takedown types (Domains & Social Media)

### Preemptive takedown success

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FJ42AJlA1UZxBrBCn6T2T%2Fimage.png?alt=media&amp;token=1327767e-da35-47ac-892a-65d2479f2ce1" alt=""><figcaption></figcaption></figure>

A gauge showing the proportion of successful domain takedowns completed before malicious content was published (**Domains without content**) versus those where content already existed (**Domains with content**). A higher proportion of no-content takedowns reflects PreCrime's predictive approach at work: stopping attacks at the infrastructure stage, before malicious content could be built out and before any of your customers were ever exposed to harm. Note: This widget covers domain takedowns only, not Social Media.

## Averted victims chart

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FtiVlfXhiUWexvarJRXJn%2Fimage.png?alt=media&amp;token=645bb77e-4cc0-4806-8be3-5a9aa12d6163" alt=""><figcaption></figcaption></figure>

A time-series chart of averted victims over the selected period, useful for spotting trends or spikes in attack activity against your brand over time, and confirming that protection is keeping pace as that activity changes. The platform buckets the data by day, week, or month depending on the range length. Use the toggle in the top right to switch between a line chart and a bar chart - your choice is remembered.

## Top 10 disrupted attacks

<figure><img src="https://805658693-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FcO8fwtDPLlpySjcpjpC5%2Fuploads%2FZDmnR1nvQo1Cghb3guLE%2Fimage.png?alt=media&amp;token=a14994b9-206a-4040-90c2-8ef883d3a10f" alt=""><figcaption></figcaption></figure>

The ten attacks with the most blocked connection attempts in the period. your highest-impact threats, and the clearest view of where PreCrime's protection made the biggest difference for your brand. Each row shows:

* The attack domain - click it to open the [attack detail page](/docs/console/disrupted-attacks/attack-details.md) in a new tab, or use the copy icon to copy the domain.
* **Averted victims** - hover to see when the takedown started and completed.
* **Takedown status** - a status chip showing the current takedown state, or a **Start takedown** button if no takedown exists yet. The **Start takedown** button is only shown to Admin users.

The "View all disrupted attacks" link opens the full [Disrupted attacks list](/docs/console/disrupted-attacks.md).


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.bfore.ai/docs/console/platform-overview.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
