Skip to main content

Create a consolidated view of threat detection scans

Creating a consolidated view of scans allows you to combine scan results from different projects. This action allows you to obtain a unified view of vulnerabilities and licensing issues, helping you to identify security risks and compliance issues in your software.

Additionally, within this view, you can select a listed vulnerability or licensing issue to view detailed remediation information.

Before you begin

Review the following statements:

  • You can only create one consolidated view per release.

  • Only scans added using the Fossa CLI tool (for Static Composition Analysis (SCA)) or the upload SBOM feature in DigiCert ONE can be added to a consolidated view.

  • Once you create a consolidated view, any SCA or SBOM-related scan added to a release will be automatically included in the consolidated view.

  • To remove a scan from a consolidated view, you must remove the scan from the release.

Create a consolidated view of scans

  1. Sign in to DigiCert ONE.

  2. Navigate to the Manager menu (top right) > Software Trust.

  3. In Software Trust, go to Releases.

  4. Locate and select the desired release.

  5. Under Threat detection scans, review the listed scans.

    • Only Static Composition Analysis (SCA) and SBOM-related scans will display in the consolidated view.

    • As an optional step, to add a scan to the consolidated view, select Assign an existing threat detection scan, and then follow the on-screen steps.

    • As an optional step, to remove a scan from the consolidated view, see Remove a scan from a consolidated view.

  6. Select Create consolidated view.

  7. In the window that appears, enter a descriptive name for the consolidated view, and then select Create consolidated view.

    • You will be redirected to the Consolidated view tab.

  8. In the Consolidated view tab, review the listed vulnerabilities and licensing issues.

    • To view detailed information, including remediation information, select the desired security issue, and then review the right window that appears.

Remove a scan from a consolidated view

To remove a scan from a consolidated view, you must remove the scan from the release.

  1. Sign in to DigiCert ONE.

  2. Navigate to the Manager menu (top right) > Software Trust.

  3. In Software Trust, go to Releases.

  4. Locate and select the desired release.

  5. Under Threat detection scans, hover over the desired scan, and then select the trash icon to remove the scan from the release.

    • This scan will be automatically removed from the consolidated view.

data de publicação: