Skip to main content
Antigen agents can use cyber-capable models through our partnership with Anthropic. To ensure responsible use, offensive runs can only test targets approved by the Antigen team. Targets define which systems an agent can test, such as a domain or IP address. Use the SDK to submit targets for review, check their approval status, and include approved targets in a run. The Antigen team manually reviews every new target. Targets submitted through the SDK also appear under Settings → Targets in the platform.

Submit a target

Call antigen.targets.create() with the domain or IP address you want to test:
attested: true confirms that your organization is authorized to test the target. The target becomes available for testing once the Antigen team approves it. Submit each domain, wildcard domain, or IP address as a separate target so you can track its approval independently.

Parameters

Returns the submitted target with a pending status.

Check approval

Retrieve a target by its ID to check its current status and any review notes:
If a target is rejected, use the review note to understand what needs to change. Your Antigen expert can help clarify the scope.

List targets

Call antigen.targets.list() to retrieve your organization’s targets:
Filter by status when you only need targets at a particular stage of review:
Each result includes the target’s ID, value, approval status, and review note.

Parameters

Returns an array of targets. If none match, the array is empty.

Use approved targets in a run

antigen.getApprovedTargets() returns your approved target values as a string array, ready to pass into a task:
Retrieve an agent and include those targets when starting a run:
You can also select a subset of approved targets:
Target approval is checked when the run starts. The values in your task must fall within your organization’s approved scope.

Update a target

Use antigen.targets.update() to correct a target’s value:
Changing the value submits the target for another review. Wait until it is approved before using the updated value in a run. To add another system while keeping an existing target, submit it with antigen.targets.create().

Parameters

Returns the updated target.

Target fields

Permissions

Submitting or updating targets requires permission to manage your organization’s targets. Approval decisions are made by the Antigen team. The SDK rejects invalid target values and duplicate submissions. Requests to retrieve or update a target that does not exist in your organization return a not-found error.