Skip to content

Allow masking of finding and provide reason without disabling the control #2418

@chetanfni

Description

@chetanfni

Additional context
I have a few instances where I want to mask a finding and do not want to disable the control.

Is your feature request related to a problem? Please describe.
While completing the compliance checks it is required by auditor to review the maskings and comments as to why those are masked, for example we have an alternate solution for logging and want to provide that as a comment to auditor.

Describe the solution you'd like
I should be able to provide comments as to why am I masking the policy. Also, masking should have a date as to till when the policy should remain masked, can allow a user to mask indefinitely.

Describe alternatives you've considered
Currently I am managing masking comments via internal JIRA

Components/Services

  • [✅] UI/Frontend
  • [✅] API/Backend
  • Agent
  • Deployment/YAMLs
  • CI/CD Integration
  • Other (specify)

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or requestneeds-triageIndicates that issue is not yet triaged and assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions