⭐️ Announcing Sigrid IDE integrations for
Visual Studio Code,
JetBrains, and
Mendix Studio Pro.
You can use these integrations to check Sigrid findings as you work on your code, triage findings, and export findings to your issue tracker if you're not able to fix them right away.
Have you tried them? We'd love your feedback: share it in our short survey.
You can use these integrations to check Sigrid findings as you work on your code, triage findings, and export findings to your issue tracker if you're not able to fix them right away.
Have you tried them? We'd love your feedback: share it in our short survey.
Portfolio-level security
The security overview page shows a summary of findings and estimated severity. From left to right, the tiles read as follows:
- Systems and Findings: the totals of systems being scanned and the sum of identified Findings. Below those counts, it shows the total changes over the selected time period. A mouseover shows an elaboration:
- Systems per CVSS severity: the count of systems where their highest-risk finding is in these risk categories, i.e.
Low,
Medium,
High, or
Critical. A mouseover on the colored bar shows the exact count:
- Open and resolved findings: the count of New, Existing and Resolved findings over the selected time period in the top right corner data selector. Note that the sums for New and Resolved are the same totals as shown in the Findings tile on the left. A mouseover on the colored bar shows the exact count:
- Security objectives overview: shows the status of set security goals on portfolio level, as below.
In the bottom part of the screen, each system is shown with a summary of its counts: number of findings per CVSS risk category and Finding age counts. For larger portfolios it may be useful to sort these on different characteristics.
Sorting can be done per columns (here, the total number of “Critical risk” findings as an example). The top right bottom for exporting the data as a spreadsheet may be useful for further analysis.