Sort Release Security Evidence
Classify security findings into release-blocking evidence, diagnostics, exceptions, and follow-up work.
sort-buckets evidence-stack score-chips Sort each security item by how it should affect the release. Blocks release Diagnostic evidence Exception required Follow-up item Critical reachable remote-code-execution vulnerability in the deployed path Risk exception expired yesterday and the vulnerable admin endpoint is still exposed Container scan report attached with package versions and image digest SBOM generated for the release artifact and linked to the release ID High finding in a library present in image but not reachable by this service, owner identified Temporary TLS policy deviation needed for one legacy customer, expiry date proposed Medium security header recommendation on an internal preview…
Sign up free — one personalized lesson every day, matched to your role and goals.
Already have an account? Sign in