Skip to content

False Positive Attestations

Attestations let you mark findings as false positives with documented justification and controlled scope.

Attestation Scopes

  • Tag-level — Applies only to a specific image tag
  • Historical — Applies to all existing instances of this CVE
  • Blanket — Applies to all current and future instances

Creating an Attestation

  1. Open a vulnerability detail sheet
  2. Click Attest as False Positive
  3. Select the scope and category
  4. Provide justification and evidence
  5. Set an expiration date (optional)

Audit Trail

All attestations are recorded with the creating user, timestamp, justification, and scope. Expired attestations are automatically flagged by the expiry worker.

On this page