The rules to editing/deleting mitigations and comments
Mitigation:
-Can add, or delete mitigation propsals if it is within the most recent scan.
-You cannot delete a Mitigation proposal or approval, once it has been approved.
-You can however, reject that mitigation approval, if it is found within the most recent scan, but you cannot delete the audit trail that lead to the rejection (so it will still show proposal, approval, rejected).
Comments:
-You can delete the comment, only if you are the user that made that comment.
-The user must delete the comment from the orginal scan the comment was made in.
-You cannot delete any comments made before a mitigation approval. However, you can delete the comment if the mitigation is in the proposed state and has not been approved.
-You can delete any comments that are made after an approval on a flaw, but not any comments made prior to the approval.
Note: If a comment was orignally made in a Sandbox scan that was promoted, you will need to delete it from the sandbox run of it, not the promoted version.
Topics (2)
Related Articles
Does Veracode's Dynamic Analysis support the scan of a Thick Client App? 409Number of Views Can Group Memberships be Managed in Veracode via AD groups 224Number of Views CWE 89 SQL Injection flaws -Mitigation Page 2 11.98KNumber of Views SCA - Unrecognized License 699Number of Views How do I modify comments for the approved mitigation? 511Number of Views
This topic isn't available in this community.
Related Topics
Ask the Community
Get answers, share a use case, discuss your favorite features, or get input from the Community.
.png)