Policies and findings · GraphQL enum

Severity enum

Severity is based on the confidence and potential impact of the detected threat.

Values

Enum Value Description

INFORMATIONAL

Informational finding; no immediate risk but useful context.

LOW

Low severity; minimal risk or limited impact.

MEDIUM

Medium severity; moderate risk requiring attention.

HIGH

High severity; significant risk requiring prompt remediation.

CRITICAL

Critical severity; immediate threat requiring urgent action.

Used by

  • Finding type: The record of a policy Rule evaluating FAIL against one graph object, such as an Endpoint, Device, or network service.
  • Issue type: The triage record for a policy violation: a security concern on one graph object that needs remediation or a decision.
  • Rule type: A policy rule evaluated against graph objects.
  • RuleBodyVulnerability type: The body of a VULNERABILITY rule: how its records are grouped, and which known CVEs it raises.
  • RuleBodyVulnerabilityInput input: Input variant of RuleBodyVulnerability.
  • RuleInput input: Input variant of Rule carrying its writable fields.
  • RuleVulnerabilityCve type: One CVE a VULNERABILITY rule matched against an object.

Example

Example

"INFORMATIONAL"