Policies and findings · GraphQL enum

SecurityRisk enum

Describes a type of security risk.

Values

Enum Value Description

VULNERABILITY

A known software or configuration vulnerability.

EXTERNAL_EXPOSURE

An asset or service exposed to the public internet.

UNPROTECTED_PRINCIPAL

An account or identity lacking sufficient protection (e.g. no MFA).

INSECURE_USE_OF_SECRETS

Credentials or secrets stored or transmitted insecurely.

UNPROTECTED_DATA

Sensitive data lacking encryption or access controls.

HIGH_PROFILE_THREAT

A high-profile or actively exploited threat.

RELIABILITY_IMPACT

A finding that may impact system reliability or availability.

INSECURE_APPLICATION

An application with insecure configuration or behavior.

EXTERNAL_ATTACK_SURFACE

An externally reachable attack surface.

Used by

  • Rule type: A policy rule evaluated against graph objects.
  • RuleInput input: Input variant of Rule carrying its writable fields.

Example

Example

"VULNERABILITY"