Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add an option on finding to determine whether it is internal or external #11247

Open
Camille-Arsac opened this issue Nov 12, 2024 · 0 comments
Open

Comments

@Camille-Arsac
Copy link

Is your feature request related to a problem? Please describe
In Defect Dojo, you can't just put the origin on a product, when this information is also needed for finding.

Describe the solution you'd like
There should be a field in the findings to indicate whether it's an internal or external publisher. By default, the option is set to internal, but if the finding is external, we need to be able to modify it to be able to follow the finding (i.e. without going through risk acceptance).

Describe alternatives you've considered
You can use tags, but as there are no restrictions on this field, it's too permissive.

Additional context
N/A

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant