openapi: 3.2.0 info: title: Harness Frontend API version: '1.0' description: The Harness Software Delivery Platform uses OpenAPI Specification v3.0. contact: name: API Support email: contact@harness.io url: https://harness.io/ x-logo: url: https://mma.prnewswire.com/media/779232/Harnes_logo_horizontal.jpg?p=facebook altText: Harness termsOfService: https://harness.io/terms-of-use/ servers: - url: https://app.harness.io description: Harness host URL - url: https://{vanity} description: Vanity URL variables: vanity: default: app.harness.io security: - x-api-key: [] tags: - name: Frontend description: Endpoints that power the STO micro-frontend paths: /sto/api/v2/frontend/all-issues/filters: x-internal: true get: description: Provide list of filters for a projects latest baseline scans operationId: Frontend#AllIssuesFilters parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string responses: '200': content: application/json: example: exploitabilityFlag: true issueCategories: - Insecure Direct Object Reference (AI SAST) - SQL Injection latestBaselineScans: - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository reachabilityFlag: true schema: $ref: '#/components/schemas/AllIssuesFiltersResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues filters x-summary-source: derived /sto/api/v2/frontend/all-issues/issues: x-internal: true get: description: Provides a paginated list of issues for a project found in the latest baseline scans operationId: Frontend#AllIssuesList parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: pipeline1,pipeline2 in: query name: pipelineIds schema: example: pipeline1,pipeline2 pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: scanTools schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' in: query name: severityOverriden schema: default: Yes,No description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef in: query name: searchById schema: description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: Active,Exempted,Remediated in: query name: statuses schema: example: Active,Exempted,Remediated pattern: ^(Active|Exempted|Remediated)(,Active|,Exempted|,Remediated)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP in: query name: aiTriaged schema: description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string responses: '200': content: application/json: example: hasRules: true issues: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/AllIssuesListResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues list x-summary-source: derived /sto/api/v2/frontend/all-issues/issues/{issueId}: x-internal: true get: description: Provides issue details for a project's latest baseline scans operationId: Frontend#AllIssuesDetails parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true example: A Target Name in: query name: search schema: example: A Target Name maxLength: 256 type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - description: The ID of the Security Issue example: abcdef1234567890ghijkl in: path name: issueId required: true schema: description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: description: Est eligendi et at. epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exploitability: 'yes' impactedTargets: - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. inKev: true issueType: Omnis dignissimos aut distinctio dignissimos cum. lastDetected: 1634836529 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: owasp severityCode: High targetType: Quia quasi ipsam et delectus. title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' schema: $ref: '#/components/schemas/AllIssuesDetailsResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues details x-summary-source: derived /sto/api/v2/frontend/all-issues/issues/{issueId}/targets/{targetId}: x-internal: true get: description: Provide list of filters for the latest scans of a baseline operationId: Frontend#AllIssuesOccurrenceDetails parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true example: A Target Name in: query name: search schema: example: A Target Name maxLength: 256 type: string - description: The ID of the Security Issue example: abcdef1234567890ghijkl in: path name: issueId required: true schema: description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - description: Associated Target ID example: abcdef1234567890ghijkl in: path name: targetId required: true schema: description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. description: Fugit necessitatibus. exemptionId: abcdef1234567890ghijkl exploitability: 'yes' issueType: Accusantium rerum autem. lastDetected: 1634836529 occurrences: - Aperiam ex quibusdam quia adipisci perferendis.: Voluptate at corrupti. Dolor architecto qui odio natus distinctio.: Ut omnis minus. In dolorem molestiae consectetur fugiat.: Ratione labore dolor quisquam a. - Et quis aliquid quasi ducimus magni.: Quia accusantium ullam sunt. Veritatis quidem ratione tempore in corporis.: Quas quidem id provident voluptas. - Nemo iusto.: Ullam eos iste consequatur occaecati impedit ut. Voluptas consequatur id quas nobis.: Eum magnam est corrupti et. pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. severityCode: High targetName: The Target targetType: Ratione at aut illum. targetVariantId: abcdef1234567890ghijkl title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' variantName: Autem eos saepe perspiciatis molestiae blanditiis perferendis. schema: $ref: '#/components/schemas/AllIssuesOccurrenceDetailsResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues occurrence details x-summary-source: derived /sto/api/v2/frontend/all-issues/v2/counts: x-internal: true get: description: Returns severity-based and issue-type-based counts for the all-issues page using the pre-aggregated summary table operationId: Frontend#AllIssuesCountsV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: pipeline1,pipeline2 in: query name: pipelineIds schema: example: pipeline1,pipeline2 pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: scanTools schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' in: query name: severityOverriden schema: default: Yes,No description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef in: query name: searchById schema: description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: Active,Exempted,Remediated in: query name: statuses schema: example: Active,Exempted,Remediated pattern: ^(Active|Exempted|Remediated)(,Active|,Exempted|,Remediated)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP in: query name: aiTriaged schema: description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string responses: '200': content: application/json: example: issueTypeCounts: Delectus quo eveniet dolor et.: 4446992006003987000 Deleniti cum qui nobis.: 5866948253269774000 Et ab corrupti quas et quod hic.: 5328760490430885000 severityCounts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 schema: $ref: '#/components/schemas/AllIssuesCountsV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues counts V2 x-summary-source: derived /sto/api/v2/frontend/all-issues/v2/counts/total: x-internal: true get: description: Returns filter-independent total issue count and total occurrences for a project operationId: Frontend#AllIssuesTotalsV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string responses: '200': content: application/json: example: totalFpCount: 9079639780261498000 totalIssues: 2960802548015444500 totalOccurrences: 7570576156143440000 totalTpCount: 5474443646894541000 schema: $ref: '#/components/schemas/AllIssuesTotalsV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues totals V2 x-summary-source: derived /sto/api/v2/frontend/all-issues/v2/issues: x-internal: true get: description: Provides a paginated list of issues for a project using the pre-aggregated summary table operationId: Frontend#AllIssuesListV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: pipeline1,pipeline2 in: query name: pipelineIds schema: example: pipeline1,pipeline2 pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: scanTools schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' in: query name: severityOverriden schema: default: Yes,No description: Filter issues by whether their severity has been overridden. Use 'Yes,No' for all issues. example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef in: query name: searchById schema: description: Return only the baseline issue with this exact issue ID. Intended for deeplink targeting (e.g. opening the issue details side panel from a JIRA ticket); not exposed in the UI search box and applied independently of the free-text 'search' filter. example: abcdef1234567890abcdef pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: Active,Exempted,Remediated in: query name: statuses schema: example: Active,Exempted,Remediated pattern: ^(Active|Exempted|Remediated)(,Active|,Exempted|,Remediated)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown-reachability' shows issues where all occurrences are unreachable or have no reachability data. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP in: query name: aiTriaged schema: description: Filter by AI triage verdict. Comma-separated list of enum values ('LikelyFP', 'LikelyTP', 'NotEvaluatedYet') or UI labels ('Likely FP', 'Likely TP', 'Not Evaluated Yet'). Issues with no triage data are excluded when this filter is set. example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string responses: '200': content: application/json: example: hasRules: true issues: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/AllIssuesListV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues list V2 x-summary-source: derived /sto/api/v2/frontend/all-issues/v2/issues/{issueId}: x-internal: true get: description: Provides issue details for a project using the pre-aggregated summary and detection tables operationId: Frontend#AllIssuesDetailsV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true example: None,Pending,Rejected,Expired,PartiallyExempted in: query name: exemptionStatuses schema: example: None,Pending,Rejected,Expired,PartiallyExempted pattern: ^(None|Pending|Approved|Rejected|Expired|PartiallyExempted)(,None|,Pending|,Approved|,Rejected|,Expired|,PartiallyExempted)*$ type: string - allowEmptyValue: true example: A Target Name in: query name: search schema: example: A Target Name maxLength: 256 type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - description: The ID of the Security Issue example: abcdef1234567890ghijkl in: path name: issueId required: true schema: description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. description: Similique possimus voluptate. epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' impactedTargets: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. inKev: true issueType: Ullam et iusto ducimus delectus odit. lastDetected: 1634836529 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: owasp severityCode: High status: Active targetType: Molestiae officiis atque dolorem laborum vel. title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' schema: $ref: '#/components/schemas/AllIssuesDetailsV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues details V2 x-summary-source: derived /sto/api/v2/frontend/all-issues/v2/trend: x-internal: true get: description: Returns daily trend data of issue counts by status for a given time interval operationId: Frontend#AllIssuesTrendV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: scanTools schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true description: Number of days to fetch trend data for example: 7 in: query name: intervalDays schema: default: 7 description: Number of days to fetch trend data for example: 7 format: int64 maximum: 90 minimum: 1 type: integer responses: '200': content: application/json: example: trend: - active: 10 day: 1710720000 remediated: 5 - active: 10 day: 1710720000 remediated: 5 schema: $ref: '#/components/schemas/AllIssuesTrendV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#All issues trend V2 x-summary-source: derived /sto/api/v2/frontend/executions/trend: x-internal: true get: description: Returns per-execution occurrence severity counts (Finding Trend across Scans) for a target variant from execution_summary. operationId: Frontend#ExecutionTrend parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Associated Target Variant ID example: abcdef1234567890ghijkl in: query name: targetVariantId required: true schema: description: Associated Target Variant ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true description: Number of trailing days of executions to return example: 30 in: query name: intervalDays schema: default: 30 description: Number of trailing days of executions to return example: 30 format: int64 maximum: 90 minimum: 1 type: integer responses: '200': content: application/json: example: trend: - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 schema: $ref: '#/components/schemas/ExecutionTrendResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Execution trend x-summary-source: derived /sto/api/v2/frontend/exemption/{exemptionId}/issue-severity-change: x-internal: true get: description: Provides the severity change for an issue when approving occurrence level exemption operationId: Frontend#IssueSeverityChange parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: The Security Scan execution that detected this Security Issue example: abcdef1234567890ghijkl in: query name: scanId schema: description: The Security Scan execution that detected this Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: The ID of the Security Issue example: abcdef1234567890ghijkl in: query name: issueId required: true schema: description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - description: ID of Security Test Exemption example: abcdef1234567890ghijkl in: path name: exemptionId required: true schema: description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: currentSeverityCode: High newSeverityCode: Medium schema: $ref: '#/components/schemas/IssueSeverityChangeResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Issue severity change x-summary-source: derived /sto/api/v2/frontend/exemption/{exemptionId}/targets: x-internal: true get: description: Returns a list of impacted target details for an exemption id operationId: Frontend#ImpactedTargetsForExemption parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - description: ID of Security Test Exemption example: abcdef1234567890ghijkl in: path name: exemptionId required: true schema: description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: baselineTargetsExist: true impactedTargets: - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/ExemptionImpactedTargetsResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Impacted targets for exemption x-summary-source: derived /sto/api/v2/frontend/exemptions: x-internal: true post: description: Provides data needed by the Global Exemptions Security Review page operationId: Frontend#GlobalExemptions parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true description: Exemption status example: Approved in: query name: status required: true schema: description: Exemption status enum: - Approved - Pending - Expired - Rejected - Canceled example: Approved maxLength: 8 type: string - allowEmptyValue: true example: Keyword search. Searches Title, Reason & Type in: query name: search schema: default: '' example: Keyword search. Searches Title, Reason & Type maxLength: 128 type: string - allowEmptyValue: true description: 'Column to sort by (default: requestedOn)' example: requestedOn in: query name: sortBy schema: description: 'Column to sort by (default: requestedOn)' enum: - severity - requestedBy - approvedBy - rejectedBy - requestedOn - expiredOn - exemptionDuration example: requestedOn maxLength: 32 type: string - allowEmptyValue: true description: 'Sort order: ascending or descending (default: desc)' example: desc in: query name: sortOrder schema: description: 'Sort order: ascending or descending (default: desc)' enum: - asc - desc example: desc maxLength: 4 type: string - allowEmptyValue: true description: Harness personal or service access token example: Delectus impedit perspiciatis eaque expedita. in: header name: X-Api-Key schema: description: Harness personal or service access token example: Dolorem voluptate odit. type: string requestBody: content: application/json: example: approvedBy: user1111111111111111,user2222222222222222 issueTypes: SAST,SCA orgProjectFilter: - org1:project1 - org1:project2 pipelineIds: pipeline1,pipeline2 reasons: Acceptable Risk,False Positive rejectedBy: user1111111111111111,user2222222222222222 requestedBy: user1111111111111111,user2222222222222222 scanners: snyk,owasp scopes: PROJECT,PIPELINE severityCodes: Critical,High,Medium targetIds: target1111111111111111,target2222222222222222 targetTypes: repository,container schema: $ref: '#/components/schemas/GlobalExemptionsRequestBody' required: true responses: '200': content: application/json: example: counts: Approved: 150 Expired: 150 Pending: 150 Rejected: 150 exemptions: - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/SecurityReviewResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - X-Api-Key_header_X-Api-Key: [] jwt_header_Authorization: - sto_exemption_view tags: - Frontend summary: Frontend#Global exemptions x-summary-source: derived /sto/api/v2/frontend/exemptions/filters: x-internal: true post: description: Provide list of filters for exemptions operationId: Frontend#ExemptionsFilters parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness personal or service access token example: Ratione cum odio accusamus placeat. in: header name: X-Api-Key schema: description: Harness personal or service access token example: Molestiae aspernatur et vel quo laboriosam pariatur. type: string requestBody: content: application/json: example: orgProjectFilter: - org1:project1 - org1:project2 schema: $ref: '#/components/schemas/ExemptionsFiltersRequestBody' required: true responses: '200': content: application/json: example: pipelines: - Vero exercitationem vero accusamus ab. - Qui et inventore vero enim aut. - Molestiae optio eos. - Similique soluta quod quisquam. reasons: - Inventore ipsam. - Excepturi iure et aliquid amet. scanners: - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk targets: - targetId: target1111111111111111 targetName: my-repo targetType: repository - targetId: target1111111111111111 targetName: my-repo targetType: repository users: - email: john.doe@example.com name: John Doe userId: user1111111111111111 - email: john.doe@example.com name: John Doe userId: user1111111111111111 - email: john.doe@example.com name: John Doe userId: user1111111111111111 schema: $ref: '#/components/schemas/ExemptionsFiltersResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - X-Api-Key_header_X-Api-Key: [] jwt_header_Authorization: - sto_exemption_view tags: - Frontend summary: Frontend#Exemptions filters x-summary-source: derived /sto/api/v2/frontend/expiring-exemptions/{executionId}: x-internal: true get: description: Returns issue summaries that are going to expire operationId: Frontend#ExpiringExemptions parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Number of days of Baseline Issue counts to return example: 618 in: query name: days schema: default: 7 description: Number of days of Baseline Issue counts to return example: 8983 format: int64 maximum: 9999 minimum: 1 type: integer - description: Harness pipeline execution ID example: abcdef1234567890ghijkl in: path name: executionId required: true schema: description: Harness pipeline execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST schema: $ref: '#/components/schemas/IssueSummaries' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Expiring exemptions x-summary-source: derived /sto/api/v2/frontend/issue-counts: x-internal: true get: description: Returns counts of active Security Issues for one or more Pipeline Executions operationId: Frontend#ExecutionIssueCounts parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Comma-separated list of Harness Execution IDs for which to count Security Issues example: abcdef1234567890ghijkl,mnopqr0987654321stuvwx in: query name: executionIds required: true schema: description: Comma-separated list of Harness Execution IDs for which to count Security Issues example: abcdef1234567890ghijkl,mnopqr0987654321stuvwx pattern: '[\dA-Za-z_-]{22}(,[\dA-Za-z_-]{22})*' type: string responses: '200': content: application/json: example: Sequi enim est atque.: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 newCritical: 1 newHigh: 3 newInfo: 11 newLow: 39 newMedium: 17 newUnassigned: 0 unassigned: 0 schema: additionalProperties: $ref: '#/components/schemas/IssueCounts' example: Quam animi facilis et hic et corrupti.: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 newCritical: 1 newHigh: 3 newInfo: 11 newLow: 39 newMedium: 17 newUnassigned: 0 unassigned: 0 type: object description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Execution issue counts x-summary-source: derived /sto/api/v2/frontend/issue-exemption/{exemptionId}: x-internal: true get: description: Returns a specific issue exemption operationId: Frontend#IssueForExemption parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Organization ID of the user's current view context example: example_org in: query name: viewOrgId schema: description: Harness Organization ID of the user's current view context example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID of the user's current view context example: example_project in: query name: viewProjectId schema: description: Harness Project ID of the user's current view context example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness STO Target ID example: abcdef1234567890ghijkl in: query name: targetId schema: description: Harness STO Target ID example: abcdef1234567890ghijkl type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - description: ID of Security Test Exemption example: abcdef1234567890ghijkl in: path name: exemptionId required: true schema: description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: baseImageName: baseImageName baselineVariantId: abcdef1234567890ghijkl created: 1651578240 currentStatus: Expired details: package: json-schema version: v0.2.3 epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Rejected exploitability: 'yes' fallbackSeverityCode: High gracePeriodDays: 13 harnessAugmentation: Est suscipit dolorum ea numquam non.: Maiores veritatis voluptatibus error modi eum. Temporibus et saepe.: Accusamus impedit asperiores exercitationem non. id: abcdef1234567890ghijkl inGrace: true key: json-schema@0.2.3 lastDetected: 1634836529 numOccurrences: 10 occurrenceId: 12345 occurrences: - line: '42' - line: '666' occurrencesPagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname productId: product1234567890abcde reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired severity: 8.5 severityCode: High status: Remediated subproduct: product targetId: abcdef1234567890ghijkl targetName: abcdef1234567890ghijkl targetType: repository targetVariantId: abcdef1234567890ghijkl targetVariantName: nodegoat:master targets: - targetId: target2222222222222222 targetName: Target 1 title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST schema: $ref: '#/components/schemas/IssueForExemptionResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Issue for exemption x-summary-source: derived /sto/api/v2/frontend/issues/{issueId}/occurrence/{occurrenceInternalId}/dataflow: x-internal: true get: description: Returns dataflow information for a specific occurrence. This endpoint is designed for async fetching of dataflow data separately from occurrence details. operationId: Frontend#OccurrenceDataflow parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - description: The ID of the Security Issue example: abcdef1234567890ghijkl in: path name: issueId required: true schema: description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - description: Internal ID of the occurrence to fetch dataflow for example: 12345 in: path name: occurrenceInternalId required: true schema: description: Internal ID of the occurrence to fetch dataflow for example: 12345 format: int64 type: integer responses: '200': content: application/json: example: dataflow: Dolor est rem dolor.: Velit ea ab quis facilis. hasDataflow: true occurrenceInternalId: 12345 schema: $ref: '#/components/schemas/OccurrenceDataflowResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view summary: Get dataflow for an occurrence tags: - Frontend /sto/api/v2/frontend/licenses/qwiet/trial: x-internal: true post: description: Provisions a Qwiet trial license for the account. Calls Qwiet first, then updates the STO license in ng-manager. operationId: Frontend#ProvisionQwietTrial parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: message: Qwiet trial license provisioned successfully schema: $ref: '#/components/schemas/ProvisionQwietTrialResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - core_account_view summary: Provision Qwiet trial license tags: - Frontend /sto/api/v2/frontend/metrics/licenseUsage: x-internal: true get: description: Returns Qwiet license usage metrics operationId: Frontend#QwietLicenseUsage parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: ok: true response: totalContributingDevelopers: 42 schema: $ref: '#/components/schemas/QwietLicenseUsageResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - core_account_view summary: Get Qwiet license usage tags: - Frontend /sto/api/v2/frontend/overview/baselines: x-internal: true get: description: Provides baseline execution data needed by the Overview page operationId: Frontend#OverviewBaselines parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string responses: '200': content: application/json: example: executionIds: - Architecto aut aliquid deserunt autem. - Quia quaerat veritatis temporibus. schema: $ref: '#/components/schemas/BaselineExecutions' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Overview baselines x-summary-source: derived /sto/api/v2/frontend/overview/historical-counts: x-internal: true get: description: Provides historical issue data needed by the Overview page operationId: Frontend#OverviewHistoricalCounts parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Number of days of Baseline Issue counts to return example: 35 in: query name: days schema: default: 30 description: Number of days of Baseline Issue counts to return example: 82 format: int64 maximum: 90 minimum: 1 type: integer responses: '200': content: application/json: example: counts: - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 schema: $ref: '#/components/schemas/HistoricalCounts' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Overview historical counts x-summary-source: derived /sto/api/v2/frontend/pipeline-security/issues: x-internal: true get: description: Provide issue data needed by the PipelineSecurityView operationId: Frontend#PipelineSecurityIssues parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Execution ID example: abcdef1234567890ghijkl in: query name: executionId required: true schema: description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: pageExisting schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSizeExisting schema: default: 50 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: pageNew schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSizeNew schema: default: 50 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: stage1,parent.stage2,stage3 in: query name: stages schema: example: stage1,parent.stage2,stage3 pattern: ^([a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: stage.step1,parent.stage.step2,stage2.step3 in: query name: steps schema: example: stage.step1,parent.stage.step2,stage2.step3 pattern: ^([a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: productNames schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)(,[a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: true in: query name: includeExempted schema: default: true example: true type: boolean - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: active,remediated in: query name: status schema: example: active,remediated pattern: ^(ACTIVE|REMEDIATED|PENDING_EXEMPTION|EXEMPTED|PARTIALLY_EXEMPTED|REJECTED)(,ACTIVE|,REMEDIATED|,PENDING_EXEMPTION|,EXEMPTED|,PARTIALLY_EXEMPTED|,REJECTED)*$ type: string - allowEmptyValue: true example: app in: query name: origins schema: example: app pattern: ^(app|base|no_layer)(,app|,base|,no_layer)*$ type: string - allowEmptyValue: true example: approved in: query name: originStatuses schema: example: approved pattern: ^(approved|unapproved)(,approved|,unapproved)*$ type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string - allowEmptyValue: true example: 'Yes' in: query name: severityOverridden schema: example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP in: query name: aiTriaged schema: description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string responses: '200': content: application/json: example: counts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 existing: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 matchingSteps: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id new: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/PipelineSecurityIssuesResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Pipeline security issues x-summary-source: derived /sto/api/v2/frontend/pipeline-security/issues/csv: x-internal: true get: description: Export pipeline security issues as JSON data for CSV generation operationId: Frontend#PipelineSecurityIssuesCSV parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Execution ID example: abcdef1234567890ghijkl in: query name: executionId required: true schema: description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: pageExisting schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSizeExisting schema: default: 50 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: pageNew schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSizeNew schema: default: 50 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: stage1,parent.stage2,stage3 in: query name: stages schema: example: stage1,parent.stage2,stage3 pattern: ^([a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: stage.step1,parent.stage.step2,stage2.step3 in: query name: steps schema: example: stage.step1,parent.stage.step2,stage2.step3 pattern: ^([a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: productNames schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)(,[a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: true in: query name: includeExempted schema: default: true example: true type: boolean - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: active,remediated in: query name: status schema: example: active,remediated pattern: ^(ACTIVE|REMEDIATED|PENDING_EXEMPTION|EXEMPTED|PARTIALLY_EXEMPTED|REJECTED)(,ACTIVE|,REMEDIATED|,PENDING_EXEMPTION|,EXEMPTED|,PARTIALLY_EXEMPTED|,REJECTED)*$ type: string - allowEmptyValue: true example: app in: query name: origins schema: example: app pattern: ^(app|base|no_layer)(,app|,base|,no_layer)*$ type: string - allowEmptyValue: true example: approved in: query name: originStatuses schema: example: approved pattern: ^(approved|unapproved)(,approved|,unapproved)*$ type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string - allowEmptyValue: true example: 'Yes' in: query name: severityOverridden schema: example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP in: query name: aiTriaged schema: description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string responses: '200': content: application/json: example: data: - - Dolor nihil est recusandae eum deserunt autem. - Culpa facere aliquid consectetur. - Enim quae consequatur rem doloremque nam et. - Dolor ut similique mollitia ea voluptatem. - - Architecto vitae accusantium aspernatur eaque voluptatem animi. - Minima quia culpa vero nihil aut exercitationem. - Error maiores voluptate et. - - Quis sunt eum dicta. - Esse autem. - Excepturi minima fugit reiciendis et. - Qui nisi repellat iure sint nulla. executionId: Velit a nulla harum unde. filename: Enim laborum itaque explicabo amet expedita in. headers: - Vel harum distinctio consequuntur. - Aut odit placeat cum. - Asperiores quos odit. totalRows: 8671128880706790000 schema: $ref: '#/components/schemas/ExportPipelineSecurityIssuesCSVResponseBody' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view summary: Export security issues data tags: - Frontend /sto/api/v2/frontend/pipeline-security/steps: x-internal: true get: description: Provide step data needed by the PipelineSecurityView operationId: Frontend#PipelineSecuritySteps parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Execution ID example: abcdef1234567890ghijkl in: query name: executionId required: true schema: description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: exploitabilityFlag: true issueCategories: - Insecure Direct Object Reference (AI SAST) - SQL Injection reachabilityFlag: true steps: - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' schema: $ref: '#/components/schemas/PipelineSecurityStepsResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Pipeline security steps x-summary-source: derived /sto/api/v2/frontend/pipeline-security/v2/issues: x-internal: true get: description: Provide a single combined, paginated list of pipeline security issues (new-first, then existing) for the PipelineSecurityView operationId: Frontend#PipelineSecurityIssuesV2 parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Execution ID example: abcdef1234567890ghijkl in: query name: executionId required: true schema: description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: stage1,parent.stage2,stage3 in: query name: stages schema: example: stage1,parent.stage2,stage3 pattern: ^([a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: stage.step1,parent.stage.step2,stage2.step3 in: query name: steps schema: example: stage.step1,parent.stage.step2,stage2.step3 pattern: ^([a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)(,[a-zA-Z0-9_]+\.[a-zA-Z0-9_]+(\.[a-zA-Z0-9_]+)?)*$ type: string - allowEmptyValue: true example: target1111111111111111,abcdef1234567890abcdef in: query name: targetIds schema: example: target1111111111111111,abcdef1234567890abcdef pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ type: string - allowEmptyValue: true example: repository,container in: query name: targetTypes schema: example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ type: string - allowEmptyValue: true example: owasp,zap in: query name: productNames schema: example: owasp,zap pattern: ^([a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)(,[a-zA-Z0-9_-]+(\|[a-zA-Z0-9_ -]+)?)*$ type: string - allowEmptyValue: true example: Critical,High,Medium in: query name: severityCodes schema: example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ type: string - allowEmptyValue: true example: true in: query name: includeExempted schema: default: true example: true type: boolean - allowEmptyValue: true example: CWE-123 in: query name: search schema: example: CWE-123 maxLength: 256 type: string - allowEmptyValue: true example: SAST in: query name: issueTypes schema: example: SAST pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY|UNKNOWN)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY|,UNKNOWN)*$ type: string - allowEmptyValue: true example: active,remediated in: query name: status schema: example: active,remediated pattern: ^(ACTIVE|REMEDIATED|PENDING_EXEMPTION|EXEMPTED|PARTIALLY_EXEMPTED|REJECTED)(,ACTIVE|,REMEDIATED|,PENDING_EXEMPTION|,EXEMPTED|,PARTIALLY_EXEMPTED|,REJECTED)*$ type: string - allowEmptyValue: true example: app in: query name: origins schema: example: app pattern: ^(app|base|no_layer)(,app|,base|,no_layer)*$ type: string - allowEmptyValue: true example: approved in: query name: originStatuses schema: example: approved pattern: ^(approved|unapproved)(,approved|,unapproved)*$ type: string - allowEmptyValue: true description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 in: query name: epss schema: description: 'EPSS Probability filter (single select): all (no filter), gte_15 (>=15%), gte_5 (>=5%), gte_1 (>=1%), na (N/A - No EPSS data)' example: gte_15 pattern: ^(all|gte_15|gte_5|gte_1|na)$ type: string - allowEmptyValue: true description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 in: query name: epssPercentile schema: description: 'EPSS Percentile filter (single select): all (no filter), gte_99 (>=99th), gte_90 (>=90th), gte_80 (>=80th), na (N/A - No EPSS data)' example: gte_99 pattern: ^(all|gte_99|gte_90|gte_80|na)$ type: string - allowEmptyValue: true description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' in: query name: inKev schema: description: 'CISA KEV catalog filter (multi-select, OR within): all (no filter), true (in KEV catalog), false (not in KEV catalog, including no CVE refs)' example: 'true' pattern: ^(all|true|false)(,true|,false)*$ type: string - allowEmptyValue: true example: 'Yes' in: query name: severityOverridden schema: example: 'Yes' pattern: ^(Yes|No)(,Yes|,No)*$ type: string - allowEmptyValue: true description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable in: query name: reachability schema: description: Filter by reachability status. 'reachable' shows issues with any reachable occurrence. 'unknown' shows issues where all occurrences are unreachable. example: reachable pattern: ^(reachable|unknown-reachability)(,reachable|,unknown-reachability)*$ type: string - allowEmptyValue: true description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' in: query name: exploitability schema: description: Filter by exploitability status. 'yes' shows issues with any exploitable occurrence. 'no' shows issues where no occurrence is exploitable. example: 'yes' pattern: ^(yes|no)(,yes|,no)*$ type: string - allowEmptyValue: true description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP in: query name: aiTriaged schema: description: 'Filter by AI triage verdict. Comma-separated list of enum values (''LikelyFP'', ''LikelyTP'', ''NotEvaluatedYet'') or UI labels (''Likely FP'', ''Likely TP'', ''Not Evaluated Yet''). Aggregation matches the all-issues page: an issue is LikelyTP if any in-scope occurrence is TRUE_POSITIVE, LikelyFP only when every in-scope occurrence is FALSE_POSITIVE, otherwise NotEvaluatedYet (also covers zero-verdict issues when this filter is selected).' example: Likely FP pattern: ^(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet)(,(LikelyFP|LikelyTP|NotEvaluatedYet|Likely FP|Likely TP|Not Evaluated Yet))*$ type: string - allowEmptyValue: true description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA in: query name: categories schema: description: Filter by Qwiet AI issue category from issue.details.category. Comma-separated. Use NA for issues without a category. example: Insecure Direct Object Reference (AI SAST),NA maxLength: 4096 type: string - allowEmptyValue: true description: Filter by detection type. 'new' shows only issues not present in the baseline/previous scan. 'existing' shows only issues that were already present. Comma-separated values are ORed. example: new in: query name: detectionType schema: description: Filter by detection type. 'new' shows only issues not present in the baseline/previous scan. 'existing' shows only issues that were already present. Comma-separated values are ORed. example: new pattern: ^(new|existing)(,new|,existing)*$ type: string - allowEmptyValue: true description: When true (and AST_REMEDIATION_AGENT FF on), return only issues whose current-execution occurrences intersect remediation-agent issue_augmentation. Previous-scan comparison is restricted to those issues so remediated (before-only) rows are omitted. example: true in: query name: isRemediationAgentTab schema: default: false description: When true (and AST_REMEDIATION_AGENT FF on), return only issues whose current-execution occurrences intersect remediation-agent issue_augmentation. Previous-scan comparison is restricted to those issues so remediated (before-only) rows are omitted. example: true type: boolean - allowEmptyValue: true description: When set with isRemediationAgentTab, restrict rem-agent issues to occurrences linked to this remediation_agent_summary.internal_id that still appear on current-execution scans. example: 42 in: query name: remAgentSummaryId schema: description: When set with isRemediationAgentTab, restrict rem-agent issues to occurrences linked to this remediation_agent_summary.internal_id that still appear on current-execution scans. example: 42 format: int64 type: integer responses: '200': content: application/json: example: counts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 issues: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 matchingSteps: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id remediationCounts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 schema: $ref: '#/components/schemas/PipelineSecurityIssuesV2Result' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Pipeline security issues V2 x-summary-source: derived /sto/api/v2/frontend/remediation-agent/activities: x-internal: true get: description: 'List remediation-agent PR activities for pipeline scans of this execution (same scan aggregation as pipeline counts: STO_AGGREGATE_RETRY_EXECUTIONS / STO_AGGREGATE_CHAIN_EXECUTIONS), ordered by remediation_agent_summary.created DESC. total matches totalRemAgentPRCount for the same aggregated scans.' operationId: Frontend#RemediationAgentActivities parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Execution ID example: abcdef1234567890ghijkl in: query name: executionId required: true schema: description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: 0-based offset into activities ordered by created DESC example: 0 in: query name: index schema: default: 0 description: 0-based offset into activities ordered by created DESC example: 0 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of activities to return per request (FE typically loads 100 and paginates locally) example: 100 in: query name: pageSize schema: default: 1 description: Number of activities to return per request (FE typically loads 100 and paginates locally) example: 100 format: int64 maximum: 100 minimum: 1 type: integer responses: '200': content: application/json: example: activities: - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master index: 0 total: 4 schema: $ref: '#/components/schemas/RemediationAgentActivitiesResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Remediation agent activities x-summary-source: derived /sto/api/v2/frontend/remediation/trend: x-internal: true get: description: Returns a per-execution Active Remediation trend from execution_summary. Omit targetVariantId for the project-wide aggregate over each target's tracked variant from target_summary (one variant per target). operationId: Frontend#RemediationTrend parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Associated Target Variant ID example: abcdef1234567890ghijkl in: query name: targetVariantId schema: description: Associated Target Variant ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Number of days to fetch trend data for example: 30 in: query name: intervalDays schema: default: 30 description: Number of days to fetch trend data for example: 30 format: int64 maximum: 90 minimum: 1 type: integer responses: '200': content: application/json: example: trend: - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' schema: $ref: '#/components/schemas/RemediationTrendResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_issue_view tags: - Frontend summary: Frontend#Remediation trend x-summary-source: derived /sto/api/v2/frontend/security-review: x-internal: true get: description: Provides data needed by the Security Review page operationId: Frontend#SecurityReview parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true description: Exemption status example: Approved in: query name: status required: true schema: description: Exemption status enum: - Approved - Pending - Expired - Rejected - Canceled example: Approved maxLength: 8 type: string - allowEmptyValue: true example: Keyword search. Searches Title, Reason & Type in: query name: search schema: default: '' example: Keyword search. Searches Title, Reason & Type maxLength: 128 type: string responses: '200': content: application/json: example: counts: Approved: 150 Expired: 150 Pending: 150 Rejected: 150 exemptions: - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/SecurityReviewResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_exemption_view tags: - Frontend summary: Frontend#Security review x-summary-source: derived /sto/api/v2/frontend/test-targets: x-internal: true get: description: Provides data needed by the Test Targets page operationId: Frontend#TestTargets parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Page number to fetch (starting from 0) example: 4 in: query name: page schema: default: 0 description: Page number to fetch (starting from 0) example: 4 format: int64 minimum: 0 type: integer - allowEmptyValue: true description: Number of results per page example: 50 in: query name: pageSize schema: default: 30 description: Number of results per page example: 50 format: int64 maximum: 100 minimum: 1 type: integer - allowEmptyValue: true example: The Target in: query name: search schema: example: The Target maxLength: 128 type: string - allowEmptyValue: true description: Associated Target ID example: abcdef1234567890ghijkl in: query name: targetId schema: description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string responses: '200': content: application/json: example: targets: - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved targetsPagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 schema: $ref: '#/components/schemas/TestTargetResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_testtarget_view tags: - Frontend summary: Frontend#Test targets x-summary-source: derived /sto/api/v2/frontend/test-targets/{targetId}/variants/status: x-internal: true put: description: Updates statuses for a list of Test Target Variants operationId: Frontend#UpdateTestTargetVariants parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - description: Associated Target ID example: abcdef1234567890ghijkl in: path name: targetId required: true schema: description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string requestBody: content: application/json: example: targetVariants: - id: abcdef1234567890ghijkl status: approved - id: xyz987zyx654wvu321tsr9 status: unapproved schema: $ref: '#/components/schemas/UpdateTestTargetVariantsRequestBody' required: true responses: '200': content: application/json: example: status: Distinctio est provident ut possimus eos incidunt. schema: $ref: '#/components/schemas/StoStatus' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_testtarget_approve tags: - Frontend summary: Frontend#Update test target variants x-summary-source: derived /sto/api/v2/frontend/tickets: x-internal: true post: description: Create or link Jira ticket for an issue with standardized details operationId: Frontend#CreateTicketForIssue parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string requestBody: content: application/json: example: customFields: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 harnessStoUrl: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/pipelines/pipeline1/executions/exec1/security?storeType=INLINE&issue=issueId identifiers: idName: - value1 - value2 - value3 issueId: abcdef1234567890ghijkl issueType: Bug notes: Investigate in next sprint projectKey: ABC scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl title: CVE-2024-1234 in backend-api schema: $ref: '#/components/schemas/CreateTicketForIssueRequestBody' required: true responses: '200': content: application/json: example: externalId: ABC-1234 id: abcdef1234567890ghijkl url: https://example.atlassian.net/browse/ABC-1234 schema: $ref: '#/components/schemas/CreateTicketForIssueResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_ticket_edit tags: - Frontend summary: Frontend#Create ticket for issue x-summary-source: derived /sto/api/v2/frontend/tickets/occurrence: x-internal: true post: description: Create Jira ticket for a single occurrence operationId: Frontend#CreateTicketForOccurrence parameters: - allowEmptyValue: true description: Harness Account ID example: abcdef1234567890ghijkl in: query name: accountId required: true schema: description: Harness Account ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: string - allowEmptyValue: true description: Harness Organization ID example: example_org in: query name: orgId required: true schema: description: Harness Organization ID example: example_org maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string - allowEmptyValue: true description: Harness Project ID example: example_project in: query name: projectId required: true schema: description: Harness Project ID example: example_project maxLength: 128 pattern: ^[A-Za-z_][A-Za-z0-9_]*$ type: string requestBody: content: application/json: example: customFields: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 issueId: abcdef1234567890ghijkl issueType: Bug notes: Investigate in next sprint occurrenceDeeplinkUrl: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/issues?issue=issueId&occurrence=12345 occurrenceInternalId: 12345 projectKey: ABC targetId: abcdef1234567890ghijkl title: CVE-2024-1234 in backend-api schema: $ref: '#/components/schemas/CreateTicketForOccurrenceRequestBody' required: true responses: '200': content: application/json: example: externalId: ABC-1234 id: abcdef1234567890ghijkl url: https://example.atlassian.net/browse/ABC-1234 schema: $ref: '#/components/schemas/CreateTicketForIssueResult' description: OK response. '400': content: application/json: example: message: 'Bad Request: accountId parameter is required' status: 400 schema: $ref: '#/components/schemas/NotFound' description: 'BadRequest: Bad Request response.' '401': content: application/json: example: message: Unauthorized status: 401 schema: $ref: '#/components/schemas/NotFound' description: 'Unauthorized: Unauthorized response.' '403': content: application/json: example: message: Forbidden status: 403 schema: $ref: '#/components/schemas/NotFound' description: 'Forbidden: Forbidden response.' '404': content: application/json: example: message: Not Found status: 404 schema: $ref: '#/components/schemas/NotFound' description: 'NotFound: Not Found response.' '429': content: application/json: example: message: Too Many Requests status: 429 schema: $ref: '#/components/schemas/NotFound' description: 'TooManyRequests: Too Many Requests response.' '500': content: application/json: example: message: Internal Server Error status: 500 schema: $ref: '#/components/schemas/NotFound' description: 'InternalServerError: Internal Server Error response.' security: - jwt_header_Authorization: - sto_ticket_edit tags: - Frontend summary: Frontend#Create ticket for occurrence x-summary-source: derived components: schemas: IssueSummaries: type: object properties: issues: type: array items: $ref: '#/components/schemas/IssueSummary' description: Short summary of an Issue example: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST description: List of issue summaries example: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST required: - issues DailyIssueTrend: type: object properties: active: type: integer description: Count of active issues on this day example: 10 format: int64 day: type: integer description: Unix timestamp for the day (midnight UTC) example: 1710720000 format: int64 remediated: type: integer description: Count of remediated issues on this day example: 5 format: int64 description: Issue counts for a specific day grouped by status example: active: 10 day: 1710720000 remediated: 5 required: - day - active - remediated TestTargetVariant: type: object properties: id: type: string description: Target Variant ID example: variant111111111111111 name: type: string description: Name of Target Variant example: 'Branch: feature-1' status: type: string description: Status of target variant example: approved enum: - approved - unapproved description: Individual Test Target Variant example: id: variant111111111111111 name: 'Branch: feature-1' status: approved required: - id - name FrontendExemptionTargets: type: object properties: executionId: type: string description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ hash: type: string description: Git Commit or Container Image hash example: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef maxLength: 64 lastScanned: type: number description: Timestamp of the last detection of this issue example: 1634836529 format: float name: type: string description: Name of the Test Target example: NodeGoat pattern: ^[a-zA-Z0-9_.:/|()-]+$ maxLength: 128 numExemptedOccurrences: type: integer description: Total number of occurrences exempted for an impacted target default: 0 example: 150 format: int32 numOccurrences: type: integer description: Total number of occurrences for an impacted target default: 0 example: 150 format: int32 orgId: type: string description: Harness Organization ID example: example_org pattern: ^[A-Za-z_][A-Za-z0-9_]*$ maxLength: 128 orgName: type: string description: Name of the Harness Org to which this Exemption applies example: Organization Name parameters: type: object description: Parameters for this Variant, as a JSON-encoded string example: branch: main additionalProperties: type: string example: Facilis fugit qui enim nisi consequatur. pipelineId: type: string description: ID of the Harness pipeline of the scan example: pipeline_1 projectId: type: string description: Harness Project ID example: example_project pattern: ^[A-Za-z_][A-Za-z0-9_]*$ maxLength: 128 projectName: type: string description: Name of the Harness project example: Project Name scanId: type: string description: The Security Scan execution that detected this Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetId: type: string description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ type: type: string description: Test Target's type example: repository enum: - container - repository - instance - configuration description: Impacted targets from an exemption for frontend issue details example: executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository required: - targetId - parameters CreateTicketForOccurrenceRequestBody: type: object properties: customFields: type: object description: Custom fields to add to this External Ticket example: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 additionalProperties: true issueId: type: string description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ issueType: type: string description: Jira issue type example: Bug notes: type: string description: Optional notes to append to ticket description example: Investigate in next sprint occurrenceDeeplinkUrl: type: string description: Pre-built Harness STO UI URL for this occurrence; omitted from description when empty example: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/issues?issue=issueId&occurrence=12345 occurrenceInternalId: type: integer description: Internal ID of the occurrence (occurrence.internal_id); also used as the ticket 'occurrence' identifier value example: 12345 format: int64 projectKey: type: string description: Jira project key example: ABC targetId: type: string description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ title: type: string description: Optional title override for this ticket example: CVE-2024-1234 in backend-api example: customFields: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 issueId: abcdef1234567890ghijkl issueType: Bug notes: Investigate in next sprint occurrenceDeeplinkUrl: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/issues?issue=issueId&occurrence=12345 occurrenceInternalId: 12345 projectKey: ABC targetId: abcdef1234567890ghijkl title: CVE-2024-1234 in backend-api required: - issueId - targetId - occurrenceInternalId - projectKey - issueType StoStatus: type: object properties: status: type: string description: Status example: ok example: status: ok required: - status AllIssuesListResult: type: object properties: hasRules: type: boolean description: Whether the account has at least one exemption rule. When false, clients can skip exemption rule evaluation (no rule-eval loaders). example: true issues: type: array items: $ref: '#/components/schemas/AllIssueSummary' description: Issues related to the latest scans of a baseline in a specific project example: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: $ref: '#/components/schemas/StoPagination' example: hasRules: true issues: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Quis in qui accusantium. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Remediated title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - issues - pagination - hasRules AllIssuesTotalsV2Result: type: object properties: totalFpCount: type: integer description: Filter-independent count of issues whose project-level AI-Triage rollup is LikelyFP. example: 2686003096332856300 format: int64 totalIssues: type: integer description: Total number of unique issues in the project (filter-independent) example: 2072550907887173600 format: int64 totalOccurrences: type: integer description: Total number of occurrences across all issues in the project (filter-independent) example: 7938661107507589000 format: int64 totalTpCount: type: integer description: Filter-independent count of issues whose project-level AI-Triage rollup is LikelyTP. example: 3908428763546837000 format: int64 example: totalFpCount: 2891050423428476400 totalIssues: 909040395814842800 totalOccurrences: 7308338978111449000 totalTpCount: 2240714400063742700 required: - totalOccurrences - totalIssues - totalFpCount - totalTpCount IssueSummary: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet aiTriagedReasoning: type: string description: Representative LLM reasoning quoted from one of the per-occurrence triaged verdicts (FP-verdict reasoning preferred). Field is absent when no occurrence has been triaged yet. example: The argument to path.join is __dirname, a constant, not user input. category: type: string description: Qwiet AI issue category from issue.details.category example: Insecure Direct Object Reference (AI SAST) currentStatus: type: string description: Current status of the Exemption example: Expired enum: - Pending - Approved - Rejected - Expired epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exemptionCoverage: type: string description: Indicates if the Security Issue was found to be Exempted or PartiallyExempted. example: PartiallyExempted exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionStatusAtScan: type: string description: Exemption's status at the Security Scan created time example: Rejected enum: - Pending - Approved - Rejected - Expired id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ inKev: type: boolean description: True when any linked CVE is in the CISA KEV catalog example: true isNew: type: boolean description: True if this issue is new in the current scan (not present in the baseline/previous scan). Only populated by the combined pipeline security issues V2 endpoint. example: true key: type: string description: Compression/deduplication key example: json-schema@0.2.3 maxLength: 512 lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 numNewOccurrences: type: integer example: 4143170426421762600 format: int64 numOccurrences: type: integer example: 3152924098189183000 format: int64 numRemediatedOccurrences: type: integer example: 5802977573897352000 format: int64 occurrenceInternalId: type: integer description: Internal ID of the occurrence for this row; used for dataflow API (e.g. scan/issue/occurrences and pipeline security issues) example: 12345 format: int64 originStatus: type: string description: The status of the origin, either 'approved' or 'unapproved' example: approved origins: type: array items: type: string example: Illum qui. description: The origin of the issue, either 'app' or 'base' example: - app - base overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides at scan time example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: type: integer description: PR number from remediation_agent_summary.pr_metadata example: 13114 format: int64 remAgentPrStatus: type: string description: PR status from rem-agent pr_metadata.Status (same enum as RemediationAgentActivity.status) example: Open enum: - Open - Merged - Closed remAgentPrTitle: type: string description: PR title from remediation_agent_summary.pr_metadata example: '[13114] Security fix' remAgentPrUrl: type: string description: PR URL from remediation_agent_summary.pr_metadata for the linked rem-agent summary example: https://github.com/harness/example/pull/13114 remAgentRepository: type: string description: Repository from remediation_agent_summary.pr_metadata.RepositoryName example: harness/nodegoat remAgentSummaryId: type: integer description: remediation_agent_summary.internal_id when this issue occurrence is linked via issue_augmentation to a rem-agent summary with non-null pr_metadata. Used to filter the remediations tab after all-tab counts are computed. example: 42 format: int64 scanId: type: string description: The ID of the Scan that detected this Security Issue example: scan111111111111111111 severity: type: number description: Numeric severity, from 0 (lowest) to 10 (highest) example: 8.5 format: float severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned status: type: string description: Indicates if the Security Issue was found to be remediated, ignored, etc. example: Remediated enum: - Remediated - Compensating Controls - Acceptable Use - Acceptable Risk - False Positive - Fix Unavailable - Exempted targetVariantName: type: string description: Name of the associated Target and Variant example: nodegoat:master pattern: ^[a-zA-Z0-9_-]{22}$ title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 type: type: string description: The type of vulnerability or quality issue for this Issue example: SAST enum: - SAST - DAST - SCA - IAC - SECRET - MISCONFIG - BUG_SMELLS - CODE_SMELLS - CODE_COVERAGE - EXTERNAL_POLICY description: Short summary of an Issue example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Approved id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 1298835618591837700 numOccurrences: 6682497048988426000 numRemediatedOccurrences: 1374324676203475000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST required: - title - key - severity - severityCode - id - scanId ExportPipelineSecurityIssuesCSVResponseBody: type: object properties: data: type: array items: type: array items: type: string example: Laboriosam eos voluptatem quis dolorem qui. example: - Vero libero iure qui corporis. - Aperiam consectetur qui laudantium dolores. description: CSV data rows example: - - Voluptatum possimus doloribus expedita. - Et id commodi. - Et vel dicta eius et in. - Ea quae. - - In aspernatur repellendus vero occaecati ut adipisci. - Saepe quis earum quia iste. - Delectus vel voluptate quia. executionId: type: string description: Execution ID for this export example: Harum quos ipsum. filename: type: string description: Suggested filename for download example: Ut necessitatibus. headers: type: array items: type: string example: Voluptatem aperiam dolor eligendi inventore. description: CSV column headers example: - Qui sit voluptatem aperiam. - Quo dolorem et quia rerum sequi commodi. totalRows: type: integer description: Total number of data rows example: 3228911569637565000 format: int64 example: data: - - Qui sequi dignissimos sint rem reiciendis. - Rerum quia error error. - Non et. - - Molestiae consequatur. - Laboriosam sit esse quaerat ducimus. - Nam id id natus. - - Nihil amet ut exercitationem eveniet. - Impedit eos corporis molestiae eius fugit. - Autem doloremque quidem. executionId: Nam dolorem nostrum. filename: Et sint laborum aut quis quia. headers: - Est sit dolores. - Et suscipit qui. - Provident consectetur optio ullam occaecati odio veritatis. - Ratione sunt eveniet perferendis. totalRows: 7320782401898446000 required: - headers - data - filename - totalRows - executionId IssueSeverityChangeResult: type: object properties: currentSeverityCode: type: string description: Current severity code of the issue example: High enum: - Critical - High - Medium - Low - Info - Unassigned newSeverityCode: type: string description: New severity code of the issue example: Medium enum: - Critical - High - Medium - Low - Info - Unassigned example: currentSeverityCode: High newSeverityCode: Medium required: - currentSeverityCode - newSeverityCode MinimalIssueCounts: type: object properties: critical: type: integer description: The number of Critical-severity Issues example: 1 format: int32 high: type: integer description: The number of High-severity Issues example: 3 format: int32 ignored: type: integer description: The number of Issues ignored due to Exemptions, and therefore not included in other counts example: 1 format: int32 info: type: integer description: The number of Informational Issues example: 11 format: int32 low: type: integer description: The number of Low-severity Issues example: 39 format: int32 medium: type: integer description: The number of Medium-severity Issues example: 17 format: int32 description: The count of Security Issues, by severity code, for a given Harness Pipeline Execution example: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 required: - critical - high - medium - low - info QwietLicenseUsageResult: type: object properties: ok: type: boolean description: Indicates if the request was successful example: true response: $ref: '#/components/schemas/HarnessSastScaUsage' description: Qwiet license usage metrics example: ok: true response: totalContributingDevelopers: 42 required: - ok - response ExemptionFilterScanner: type: object properties: scannerId: type: string description: Scanner ID example: snyk scannerName: type: string description: Scanner display name example: Snyk description: Scanner for filtering example: scannerId: snyk scannerName: Snyk required: - scannerId - scannerName TestTarget: type: object properties: approvedVariantsCount: type: integer description: Number of approved variants for a test target example: 1 format: int64 baseline: $ref: '#/components/schemas/TestTargetVariant' baselineRegEx: type: string description: RegEx to match for dynamically selecting the Baseline for this Scan Target. Must be compatible with the RE2 standard. example: release_.* maxLength: 128 directory: type: string description: Directory of target example: / id: type: string description: ID of target example: target1111111111111111 lastScanned: type: integer description: Timestamp at which the Baseline was last scanned example: 1634836529 format: int64 name: type: string description: Name of Target example: target 1 status: type: string description: Status of target as base image example: approved enum: - approved - unapproved totalVariantsCount: type: integer description: Number of total variants for a test target example: 10 format: int64 type: type: string description: Type of target example: repository enum: - container - repository - instance - configuration url: type: string description: Url of target example: github.com/harness/sto-core variants: type: array items: $ref: '#/components/schemas/TestTargetVariant' example: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved description: Individual TestTarget example: approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved required: - id - name - type - variants - lastScanned - approvedVariantsCount - totalVariantsCount StepInfo: type: object properties: baselineVariant: type: string description: A short description of the baseline target variant for the pipeline step's scan diff example: 'branch: main' parentStageId: type: string description: The stageId of the stage in parent pipeline which runs this scan from chain pipeline example: stage_id scanId: type: string description: Scan id example: scan111111111111111111 scanTool: type: string description: Product name of the scan tool used in this step example: owasp scanToolName: type: string description: Human readable name of the scan tool used in this step example: OWASP stageId: type: string example: stage_id stepId: type: string example: step_id subproduct: type: string description: The subproduct that identified this Security Issue example: product targetId: type: string description: The ID of the target of the pipeline step's scan example: target1111111111111111 targetName: type: string description: The name of the target of the pipeline step's scan example: The Target targetType: type: string description: The type of the target of the pipeline step's scan example: repository enum: - repository - container - instance - configuration targetVariant: type: string description: A short description of the target variant of the pipeline step's scan example: 'branch: feature' description: Information about a Scan Step example: baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' required: - scanId - scanTool - scanToolName - targetId - targetName - targetType - targetVariant - stageId - stepId ExemptionsFiltersRequestBody: type: object properties: orgProjectFilter: type: array items: type: string description: Organization:project pair example: org1:project1 pattern: ^[a-zA-Z0-9_-]+:[a-zA-Z0-9_-]+$ description: List of organization:project pairs example: - org1:project1 - org1:project2 example: orgProjectFilter: - org1:project1 - org1:project2 AllIssuesOccurrenceDetailsResult: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet aiTriagedReasoning: type: string description: Representative LLM reasoning quoted from one of the per-occurrence triaged verdicts (FP-verdict reasoning preferred). Field is absent when no occurrence has been triaged yet. example: The argument to path.join is __dirname, a constant, not user input. description: type: string description: Issue description example: Sed velit. exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exploitability: type: string description: Exploitability status of the issue for this target. 'yes' if any occurrence is exploitable, 'no' if all are not exploitable. example: 'yes' issueType: type: string description: Issue Type example: Qui et velit ut asperiores laboriosam non. lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 occurrences: type: array items: type: object example: Nostrum enim illum reiciendis quis.: Illo non illum non modi. Sit rem.: Quidem delectus cumque nam autem est in. additionalProperties: true description: List of occurrences example: - Ipsum eaque consectetur repellat dolorem.: Odio consequatur aliquid ducimus numquam et. Minima nostrum eaque ut officiis temporibus voluptates.: Adipisci vero consequatur qui ducimus. - Reiciendis fugit consequatur qui maxime.: Rerum necessitatibus. pagination: $ref: '#/components/schemas/StoPagination' reachability: type: string description: Reachability status of the issue for this target. 'reachable' if any occurrence is reachable, 'unreachable' if all are unreachable. example: reachable referenceIdentifiers: type: array items: $ref: '#/components/schemas/RefIds' description: Reference Identifiers example: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned targetName: type: string description: The name of the target of the pipeline step's scan example: The Target targetType: type: string description: Target Type example: Veniam esse a. targetVariantId: type: string description: Associated Target Variant ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 variantName: type: string description: Variant name example: Esse est. example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. description: Voluptatem voluptates vero quia quis ut. exemptionId: abcdef1234567890ghijkl exploitability: 'yes' issueType: Velit tempore libero voluptas quas placeat fuga. lastDetected: 1634836529 occurrences: - Consequatur labore officia quam debitis.: Illum in delectus deserunt cum aut. Saepe tempora quod officia nihil magnam animi.: Mollitia dolor. Soluta rerum deserunt.: Sint non. - Dolor expedita exercitationem saepe.: Nemo explicabo assumenda error alias. Sint quae adipisci.: Saepe incidunt laudantium. - Accusantium libero soluta voluptatem aut.: Ut in eligendi molestiae dolore maiores enim. Esse excepturi est quam repudiandae.: Et laborum dicta praesentium. - Et inventore fuga autem quos qui.: Odit accusantium adipisci voluptas modi. Numquam debitis laboriosam sunt officiis provident sed.: Eius et est minima laudantium distinctio ex. pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. severityCode: High targetName: The Target targetType: Blanditiis debitis vero. targetVariantId: abcdef1234567890ghijkl title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' variantName: Vitae repudiandae nesciunt. required: - title - targetName - variantName - targetType - severityCode - description - occurrences - lastDetected TestTargetResult: type: object properties: targets: type: array items: $ref: '#/components/schemas/TestTarget' description: Test Targets data example: - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved targetsPagination: $ref: '#/components/schemas/StoPagination' description: Data needed by the Test Targets page example: targets: - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - approvedVariantsCount: 1 baseline: id: variant111111111111111 name: 'Branch: feature-1' status: approved baselineRegEx: release_.* directory: / id: target1111111111111111 lastScanned: 1634836529 name: target 1 status: approved totalVariantsCount: 10 type: repository url: github.com/harness/sto-core variants: - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved - id: variant111111111111111 name: 'Branch: feature-1' status: approved targetsPagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - targets - targetsPagination BaselineExecutions: type: object properties: executionIds: type: array items: type: string example: Ut dicta id. description: Harness Execution IDs of the most recent baseline scans example: - Laborum nihil eius officia. - Facilis voluptatum esse autem. example: executionIds: - Temporibus sapiente aliquam voluptatum autem voluptatem sint. - Saepe sequi cum eum. - Voluptas fugit. - Repellat tempora. required: - executionIds CreateTicketForIssueRequestBody: type: object properties: customFields: type: object description: Custom fields to add to this External Ticket example: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 additionalProperties: true harnessStoUrl: type: string description: Pre-built Harness STO UI URL for Jira description example: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/pipelines/pipeline1/executions/exec1/security?storeType=INLINE&issue=issueId identifiers: type: object description: Identifier(s) to associate with this ticket, in "key":"value" and/or "key":ArrayOf("values"...) form example: idName: - value1 - value2 - value3 additionalProperties: true issueId: type: string description: The ID of the Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ issueType: type: string description: Jira issue type example: Bug notes: type: string description: Optional notes to append to ticket description example: Investigate in next sprint projectKey: type: string description: Jira project key example: ABC scanId: type: string description: The Security Scan execution that detected this Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetId: type: string description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ title: type: string description: Optional title override for this ticket example: CVE-2024-1234 in backend-api example: customFields: customfield_1: id: '12345' customfield_2: - value: value1 - value: value2 harnessStoUrl: https://app.harness.io/ng/account/abc/sto/orgs/default/projects/STO/pipelines/pipeline1/executions/exec1/security?storeType=INLINE&issue=issueId identifiers: idName: - value1 - value2 - value3 issueId: abcdef1234567890ghijkl issueType: Bug notes: Investigate in next sprint projectKey: ABC scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl title: CVE-2024-1234 in backend-api required: - issueId - projectKey - issueType ExecutionTrendPoint: type: object properties: executionId: type: string description: Harness execution ID example: abcdef1234567890ghijkl executionSource: type: string description: Source/trigger of the execution example: PIPELINE executionStartedAt: type: integer description: Unix timestamp when the execution started example: 1710720000 format: int64 executionUrl: type: string description: Deep link to the execution in the Harness UI example: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: type: object description: Occurrence counts grouped by issue type (e.g. SAST, SCA, SECRET) example: SAST: 10 SCA: 5 additionalProperties: type: integer example: 4049020436585555000 format: int64 severities: type: object description: Occurrence counts grouped by severity (critical, high, medium, low, info) example: critical: 1 high: 2 info: 5 low: 4 medium: 3 additionalProperties: type: integer example: 387932015963121600 format: int64 description: Occurrence severity counts and metadata for a single execution example: executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 required: - executionId - executionStartedAt - severities - issueTypes PipelineSecurityCounts: type: object properties: activeIssueCount: type: integer example: 5299786305792311000 format: int64 existing: $ref: '#/components/schemas/FrontendIssueCounts' new: $ref: '#/components/schemas/FrontendIssueCounts' remAgentPRClosedCount: type: integer description: Distinct rem-agent PRs in the current filtered issue set whose SCM status resolves to Closed. example: 7190559383239576000 format: int64 remAgentPRMergedCount: type: integer description: Distinct rem-agent PRs in the current filtered issue set whose SCM status resolves to Merged. example: 7687162174218041000 format: int64 remAgentPROpenCount: type: integer description: Distinct rem-agent PRs in the current filtered issue set whose SCM status resolves to Open. example: 5535858262568911000 format: int64 remediated: $ref: '#/components/schemas/FrontendIssueCounts' totalActive: type: integer example: 2016702666640090400 format: int64 totalApp: type: integer example: 3199927962680360400 format: int64 totalBase: type: integer example: 871499262351576000 format: int64 totalDeduplicationRate: type: number example: 0.34471864 format: float totalExempted: type: integer example: 3219051609623980500 format: int64 totalNoLayer: type: integer example: 7869680345719278000 format: int64 totalNumOccurrence: type: integer example: 2062328142247593000 format: int64 totalPartiallyExempted: type: integer example: 1887886983283286800 format: int64 totalPending: type: integer example: 7578948872215045000 format: int64 totalRejected: type: integer example: 2754655860571933700 format: int64 totalRemAgentPRCount: type: integer description: Historic/unfiltered distinct rem-agent PRs for the aggregated scans (same population as RemediationAgentActivities.total). Not limited to the current filtered issue set. example: 153807768551883550 format: int64 totalRemediated: type: integer example: 1272831981183293200 format: int64 example: activeIssueCount: 2017854764669870300 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 428043861876826750 remAgentPRMergedCount: 2497240872324136000 remAgentPROpenCount: 5466684810457075000 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 3872091636799577600 totalApp: 2331444994106303500 totalBase: 804623068631496000 totalDeduplicationRate: 0.18904915 totalExempted: 8302495743989830000 totalNoLayer: 290571184104761700 totalNumOccurrence: 3854521732090059300 totalPartiallyExempted: 8851825498598118000 totalPending: 7182431520348031000 totalRejected: 4242331732952974000 totalRemAgentPRCount: 2991776914340468000 totalRemediated: 8075429794464965000 required: - new - existing - remediated - totalActive RemediationAgentActivitiesResult: type: object properties: activities: type: array items: $ref: '#/components/schemas/RemediationAgentActivity' example: - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master index: type: integer description: Echo of request index example: 0 format: int64 total: type: integer description: Total matching summary rows across all pages (same population as PipelineSecurityCounts.totalRemAgentPRCount for these aggregated scans). Not the page length. example: 4 format: int64 example: activities: - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master - buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master index: 0 total: 4 required: - activities - total - index PendingChanges: type: object properties: durationDays: type: integer description: The number of days an issue should be exempted for example: 7 format: int64 example: durationDays: 7 RefIds: type: object properties: id: type: string example: Non quo ea. type: type: string example: Numquam in esse. example: id: Ut dolores culpa et accusantium impedit fugit. type: Similique qui consectetur eius doloremque. ImpactedTargetV2: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet aiTriagedReasoning: type: string description: Representative LLM reasoning quoted from one of the per-occurrence triaged verdicts (FP-verdict reasoning preferred). Field is absent when no occurrence has been triaged yet. example: The argument to path.join is __dirname, a constant, not user input. executionId: type: string description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionStatus: type: string description: Status of project scoped exemption for this issue example: Pending exploitability: type: string description: Exploitability status of the issue for this target. 'yes' if any occurrence is exploitable, 'no' if all are not exploitable. example: 'yes' id: type: string description: The ID of the impacted target example: target1111111111111111 lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 name: type: string description: The name of the impacted target example: The Target Name numOccurrences: type: integer description: Indicates the number of Occurrences on the Issue example: 10 format: int64 pipelineId: type: string description: Harness Pipeline ID example: example_pipeline pattern: ^[A-Za-z_][A-Za-z0-9_]*$ maxLength: 128 reachability: type: string description: Reachability status of the issue for this target. 'reachable' if any occurrence is reachable, 'unreachable' if all are unreachable. example: reachable status: type: string description: Issue Status example: Remediated enum: - Active - Exempted - Remediated userEmail: type: string description: The email associated with the user id example: user@gmail.com userId: type: string description: The user id associated with the last scan run example: Ea nobis sit. userName: type: string description: The user name associated with the user id example: firstname lastname variantName: type: string description: Variant name example: Repellat illo ut repellat enim consectetur ullam. example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Aut quod. userName: firstname lastname variantName: Hic omnis esse. required: - name - id - variantName - numOccurrences - lastDetected - pipelineId - executionId - status OccurrenceDataflowResult: type: object properties: dataflow: type: object description: Raw dataflow data as received from external scanner example: Voluptas rerum incidunt.: Vel voluptatibus odio non voluptatum. Voluptates non nesciunt neque tenetur cupiditate sit.: Rerum voluptatem aut enim quam similique. additionalProperties: true hasDataflow: type: boolean description: Indicates if dataflow data exists for this occurrence example: true occurrenceInternalId: type: integer description: Internal ID of the occurrence example: 12345 format: int64 description: Dataflow information for an occurrence example: dataflow: Recusandae vero dignissimos.: Modi voluptas praesentium eius iusto dolorum voluptates. hasDataflow: true occurrenceInternalId: 12345 required: - occurrenceInternalId - hasDataflow GlobalExemptionsRequestBody: type: object properties: approvedBy: type: string example: user1111111111111111,user2222222222222222 pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ issueTypes: type: string example: SAST,SCA pattern: ^(SAST|DAST|SCA|IAC|SECRET|MISCONFIG|BUG_SMELLS|CODE_SMELLS|CODE_COVERAGE|EXTERNAL_POLICY)(,SAST|,DAST|,SCA|,IAC|,SECRET|,MISCONFIG|,BUG_SMELLS|,CODE_SMELLS|,CODE_COVERAGE|,EXTERNAL_POLICY)*$ orgProjectFilter: type: array items: type: string description: Organization:project pair example: org1:project1 pattern: ^[a-zA-Z0-9_-]+:[a-zA-Z0-9_-]+$ description: List of organization:project pairs example: - org1:project1 - org1:project2 pipelineIds: type: string example: pipeline1,pipeline2 pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ reasons: type: string example: Acceptable Risk,False Positive pattern: ^(Other|Fix Unavailable|Compensating Controls|False Positive|Acceptable Risk|Acceptable Use)(,Other|,Fix Unavailable|,Compensating Controls|,False Positive|,Acceptable Risk|,Acceptable Use)*$ rejectedBy: type: string example: user1111111111111111,user2222222222222222 pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ requestedBy: type: string example: user1111111111111111,user2222222222222222 pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ scanners: type: string example: snyk,owasp pattern: ^([a-zA-Z0-9_-]+)(,[a-zA-Z0-9_-]+)*$ scopes: type: string example: PROJECT,PIPELINE pattern: ^(ACCOUNT|ORG|PROJECT|PIPELINE|TARGET)(,ACCOUNT|,ORG|,PROJECT|,PIPELINE|,TARGET)*$ severityCodes: type: string example: Critical,High,Medium pattern: ^(Critical|High|Medium|Low|Info)(,Critical|,High|,Medium|,Low|,Info)*$ targetIds: type: string example: target1111111111111111,target2222222222222222 pattern: ^([a-zA-Z0-9_-]{22})(,[a-zA-Z0-9_-]{22})*$ targetTypes: type: string example: repository,container pattern: ^(repository|container|instance|configuration)(,repository|,container|,instance|,configuration)*$ example: approvedBy: user1111111111111111,user2222222222222222 issueTypes: SAST,SCA orgProjectFilter: - org1:project1 - org1:project2 pipelineIds: pipeline1,pipeline2 reasons: Acceptable Risk,False Positive rejectedBy: user1111111111111111,user2222222222222222 requestedBy: user1111111111111111,user2222222222222222 scanners: snyk,owasp scopes: PROJECT,PIPELINE severityCodes: Critical,High,Medium targetIds: target1111111111111111,target2222222222222222 targetTypes: repository,container LatestBaselineScanInfo: type: object properties: pipelineId: type: string description: ID of the Harness pipeline to which this Exemption applies example: pipeline_1 scanTool: type: string description: Product name of the scan tool used in this step example: owasp scanToolName: type: string description: Human readable name of the scan tool used in this step example: OWASP targetId: type: string description: Associated Target ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetName: type: string description: The name of the target of the pipeline step's scan example: The Target targetType: type: string example: repository enum: - container - repository - instance - configuration description: Information about a the latest scan of a targets baseline variant example: pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository required: - targetId - targetName - targetType - pipelineId - scanTool - scanToolName ExemptionFilterUser: type: object properties: email: type: string description: User email example: john.doe@example.com name: type: string description: User name example: John Doe userId: type: string description: User ID example: user1111111111111111 description: User for filtering example: email: john.doe@example.com name: John Doe userId: user1111111111111111 required: - userId IssueForExemptionResult: type: object properties: baseImageName: type: string description: base image name of the issue example: baseImageName baselineVariantId: type: string description: The Baseline Target Variant related to this Security Issue example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ created: type: integer description: Unix timestamp at which the resource was created example: 1651578240 format: int64 currentStatus: type: string description: Current status of the Exemption example: Pending enum: - Pending - Approved - Rejected - Expired details: type: object description: Issue details common to all occurrences example: package: json-schema version: v0.2.3 additionalProperties: true epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exemptionCoverage: type: string description: Indicates if the Security Issue was found to be Exempted or PartiallyExempted. example: PartiallyExempted exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionStatusAtScan: type: string description: Exemption's status at the Security Scan created time example: Pending enum: - Pending - Approved - Rejected - Expired exploitability: type: string description: Exploitability status of the issue (yes or no) example: 'yes' fallbackSeverityCode: type: string description: Issue-table severity code used as occurrence fallback at read time; omitted from API responses example: High enum: - Critical - High - Medium - Low - Info - Unassigned gracePeriodDays: type: integer description: Issue-level grace period rollup in days. Only populated when scan honorGracePeriod is enabled. example: 13 format: int64 harnessAugmentation: type: object description: Harness Augmentation details example: Distinctio omnis.: Maxime rerum corporis omnis molestiae. additionalProperties: true id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ inGrace: type: boolean description: 'True when the displayed severity is grace-sheltered: at the display-max severity band, all non-exempt occurrences are in grace. Only populated when scan honorGracePeriod is enabled.' example: true key: type: string description: Compression/deduplication key example: json-schema@0.2.3 maxLength: 512 lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 numOccurrences: type: integer description: Indicates the number of Occurrences on the Issue example: 10 format: int32 occurrenceId: type: integer example: 12345 format: int64 minimum: 1 occurrences: type: array items: type: object example: Dicta sed blanditiis.: Quaerat ab aut sit est sed reiciendis. Placeat itaque repellendus repudiandae veritatis.: Est voluptatibus temporibus error quis. Repellat et harum enim corrupti laborum.: Quia qui sit. additionalProperties: true description: Array of details unique to each occurrence example: - line: '42' - line: '666' occurrencesPagination: $ref: '#/components/schemas/StoPagination' originStatus: type: string description: The status of the origin, either 'approved' or 'unapproved' example: approved origins: type: array items: type: string example: Esse ducimus voluptas similique molestiae quod ut. description: The origins of the issue example: - app - base overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides at scan time example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname productId: type: string description: The scan tool that identified this Security Issue example: product1234567890abcde pattern: ^[a-zA-Z0-9_-]{22}$ reachability: type: string description: Reachability status of the issue (reachable or unreachable) example: reachable recentActivities: type: array items: $ref: '#/components/schemas/ExemptionRecentActivity' description: Up to 3 most recent exemption history events for this issue, newest first example: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired severity: type: number description: Numeric severity, from 0 (lowest) to 10 (highest) example: 8.5 format: float severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned status: type: string description: Indicates if the Security Issue was found to be remediated, ignored, etc. example: Remediated enum: - Remediated - Compensating Controls - Acceptable Use - Acceptable Risk - False Positive - Fix Unavailable - Exempted subproduct: type: string description: The subproduct that identified this Security Issue example: product targetId: type: string description: The Target that this Security Issue affects example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetName: type: string description: The Name of the Target that this Security Issue affects example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetType: type: string description: The type of the Target that this Security Issue affects example: repository enum: - container - repository - instance - configuration targetVariantId: type: string description: The Target Variant that this Security Issue affects example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ targetVariantName: type: string description: Name of the associated Target and Variant example: nodegoat:master pattern: ^[a-zA-Z0-9_-]{22}$ targets: type: array items: type: object example: Animi omnis eum provident voluptate et.: Dolore itaque. Et est exercitationem modi neque cupiditate.: Consequatur reiciendis consequatur fugit tempora quia. Inventore qui.: Dolorum facilis est. additionalProperties: true example: - targetId: target2222222222222222 targetName: Target 1 title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 type: type: string description: The type of vulnerability or quality issue for this Issue example: SAST enum: - SAST - DAST - SCA - IAC - SECRET - MISCONFIG - BUG_SMELLS - CODE_SMELLS - CODE_COVERAGE - EXTERNAL_POLICY example: baseImageName: baseImageName baselineVariantId: abcdef1234567890ghijkl created: 1651578240 currentStatus: Rejected details: package: json-schema version: v0.2.3 epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Expired exploitability: 'yes' fallbackSeverityCode: High gracePeriodDays: 13 harnessAugmentation: Quam sed.: Dignissimos expedita. id: abcdef1234567890ghijkl inGrace: true key: json-schema@0.2.3 lastDetected: 1634836529 numOccurrences: 10 occurrenceId: 12345 occurrences: - line: '42' - line: '666' occurrencesPagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname productId: product1234567890abcde reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired severity: 8.5 severityCode: High status: Remediated subproduct: product targetId: abcdef1234567890ghijkl targetName: abcdef1234567890ghijkl targetType: repository targetVariantId: abcdef1234567890ghijkl targetVariantName: nodegoat:master targets: - targetId: target2222222222222222 targetName: Target 1 title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST required: - targets - targetType - title - key - severity - severityCode - productId - details - id - created AllBaselineIssueSummary: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict across every in-scope occurrence. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exemptionStatus: type: string description: Status of project scoped exemption for this issue example: Pending exploitability: type: string description: Aggregate exploitability status of the issue across all scans. 'yes' if any occurrence is exploitable, 'no' if all are not exploitable. example: 'yes' id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ issueType: type: string description: Issue Type example: Officiis inventore rerum. lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 numOccurrences: type: number description: Number of occurrences of this issue against the latest baseline scan example: 12 format: float numTargetsImpacted: type: number description: Number of targets impacted where this issue was found against the latest baseline scan example: 2 format: float overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: type: string description: Aggregate reachability status of the issue across all scans. 'reachable' if any occurrence is reachable, 'unreachable' if all are unreachable. example: reachable severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned status: type: string description: Issue Status example: Exempted enum: - Active - Exempted - Remediated title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 description: All issue list summary from pre-aggregated baseline issue summary table example: aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Ut commodi. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Active title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' required: - id - title - severityCode - numTargetsImpacted - numOccurrences - lastDetected - status ImpactedTarget: type: object properties: executionId: type: string description: Harness Execution ID example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionStatus: type: string description: Status of project scoped exemption for this issue example: Pending exploitability: type: string description: Exploitability status of the issue for this target. 'yes' if any occurrence is exploitable, 'no' if all are not exploitable. example: 'yes' id: type: string description: The ID of the impacted target example: target1111111111111111 lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 name: type: string description: The name of the impacted target example: The Target Name numOccurrences: type: integer description: Indicates the number of Occurrences on the Issue example: 10 format: int64 pipelineId: type: string description: Harness Pipeline ID example: example_pipeline pattern: ^[A-Za-z_][A-Za-z0-9_]*$ maxLength: 128 reachability: type: string description: Reachability status of the issue for this target. 'reachable' if any occurrence is reachable, 'unreachable' if all are unreachable. example: reachable userEmail: type: string description: The email associated with the user id example: user@gmail.com userId: type: string description: The user id associated with the last scan run example: Aliquam quia exercitationem. userName: type: string description: The user name associated with the user id example: firstname lastname variantName: type: string description: Variant name example: Nulla ut qui quo officiis ullam. example: executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Reprehenderit ea est sit. userName: firstname lastname variantName: Sit est et. required: - name - id - variantName - numOccurrences - lastDetected - pipelineId - executionId PipelineSecurityIssuesV2Result: type: object properties: counts: $ref: '#/components/schemas/PipelineSecurityCounts' issues: $ref: '#/components/schemas/PaginatedIssueSummaries' matchingSteps: type: array items: $ref: '#/components/schemas/StageStepID' example: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id remediationCounts: $ref: '#/components/schemas/PipelineSecurityCounts' description: Combined, paginated list of pipeline security issues for the PipelineSecurityView example: counts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 issues: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 matchingSteps: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id remediationCounts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 required: - issues - counts - matchingSteps ExemptionImpactedTargetsResult: type: object properties: baselineTargetsExist: type: boolean description: Indicates if the targets have a baseline set, If no show no baseline card example: true impactedTargets: type: array items: $ref: '#/components/schemas/FrontendExemptionTargets' description: Impacted target details example: - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository pagination: $ref: '#/components/schemas/StoPagination' description: List of targets for an exemption example: baselineTargetsExist: true impactedTargets: - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository - executionId: abcdef1234567890ghijkl hash: deadbeefdeadbeefdeadbeefdeadbeefdeadbeef lastScanned: 1634836529 name: NodeGoat numExemptedOccurrences: 150 numOccurrences: 150 orgId: example_org orgName: Organization Name parameters: branch: main pipelineId: pipeline_1 projectId: example_project projectName: Project Name scanId: abcdef1234567890ghijkl targetId: abcdef1234567890ghijkl type: repository pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - impactedTargets - pagination - baselineTargetsExist AllIssuesCountsV2Result: type: object properties: issueTypeCounts: type: object description: Issue counts grouped by issue type (e.g. SAST, SCA, DAST, UNKNOWN) example: Deserunt accusamus.: 3110108624156862500 In magni et est rerum.: 2437245215833258500 Quae est voluptas voluptas.: 1482815014789146600 additionalProperties: type: integer example: 2480536992126426600 format: int64 severityCounts: $ref: '#/components/schemas/MinimalIssueCounts' example: issueTypeCounts: Cupiditate impedit blanditiis.: 2070539221538582300 Laborum est sit.: 8123245264978690000 Sunt corrupti nemo.: 716726854374531600 severityCounts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 required: - severityCounts - issueTypeCounts PipelineSecurityStepsResult: type: object properties: exploitabilityFlag: type: boolean description: Indicates if exploitability analysis is available (true if any step uses Harness Code) example: true issueCategories: type: array items: type: string example: Neque eius id in voluptatem et. description: Distinct non-empty issue categories present in this pipeline execution example: - Insecure Direct Object Reference (AI SAST) - SQL Injection reachabilityFlag: type: boolean description: Indicates if reachability analysis is available (true if any step uses Harness Code) example: true steps: type: array items: $ref: '#/components/schemas/StepInfo' example: - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' example: exploitabilityFlag: true issueCategories: - Insecure Direct Object Reference (AI SAST) - SQL Injection reachabilityFlag: true steps: - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' - baselineVariant: 'branch: main' parentStageId: stage_id scanId: scan111111111111111111 scanTool: owasp scanToolName: OWASP stageId: stage_id stepId: step_id subproduct: product targetId: target1111111111111111 targetName: The Target targetType: repository targetVariant: 'branch: feature' required: - steps - reachabilityFlag - exploitabilityFlag AllIssueSummary: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict across every in-scope occurrence. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exemptionExpiration: type: integer description: Unix timestamp at which this Exemption will expire example: 1651578240 format: int64 exemptionId: type: string description: ID of Security Test Exemption example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ exemptionStatus: type: string description: Status of project scoped exemption for this issue example: Pending exploitability: type: string description: Aggregate exploitability status of the issue across all scans. 'yes' if any occurrence is exploitable, 'no' if all are not exploitable. example: 'yes' id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ issueType: type: string description: Issue Type example: Recusandae voluptatem sed temporibus sed dignissimos maxime. lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 numOccurrences: type: number description: Number of occurrences of this issue against the latest baseline scan example: 12 format: float numTargetsImpacted: type: number description: Number of targets impacted where this issue was found against the latest baseline scan example: 2 format: float overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: type: string description: Aggregate reachability status of the issue across all scans. 'reachable' if any occurrence is reachable, 'unreachable' if all are unreachable. example: reachable severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned status: type: string description: Issue Status example: Remediated enum: - Active - Exempted - Remediated title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 description: All issue list summary example: aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionExpiration: 1651578240 exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Atque hic. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Active title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' required: - id - title - severityCode - numTargetsImpacted - numOccurrences - lastDetected FrontendIssueCounts: type: object properties: active: type: integer description: The total of active Issues example: 150 format: int32 critical: type: integer description: The number of Critical-severity Issues example: 1 format: int32 high: type: integer description: The number of High-severity Issues example: 3 format: int32 ignored: type: integer description: The number of Issues ignored due to Exemptions, and therefore not included in other counts example: 1 format: int32 info: type: integer description: The number of Informational Issues example: 11 format: int32 low: type: integer description: The number of Low-severity Issues example: 39 format: int32 medium: type: integer description: The number of Medium-severity Issues example: 17 format: int32 example: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 required: - active - critical - high - medium - low - info ExemptionFilterTarget: type: object properties: targetId: type: string description: Target ID example: target1111111111111111 targetName: type: string description: Target name example: my-repo targetType: type: string description: Target type example: repository description: Target for filtering example: targetId: target1111111111111111 targetName: my-repo targetType: repository required: - targetId - targetName - targetType HistoricalIssueCounts: type: object properties: active: type: boolean description: True if at least one baseline was scanned on this date example: false counts: $ref: '#/components/schemas/MinimalIssueCounts' date: type: integer example: 1651578240 format: int64 detections: $ref: '#/components/schemas/MinimalIssueCounts' remediations: $ref: '#/components/schemas/MinimalIssueCounts' example: active: true counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 required: - date - counts - detections - remediations - active ProvisionQwietTrialResult: type: object properties: message: type: string description: Status message describing the result example: Qwiet trial license provisioned successfully description: Result of Qwiet trial provisioning example: message: Qwiet trial license provisioned successfully required: - message HistoricalCounts: type: object properties: counts: type: array items: $ref: '#/components/schemas/HistoricalIssueCounts' description: Counts of active issues on baselines for each of the past several days example: - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 example: counts: - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 - active: false counts: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 date: 1651578240 detections: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remediations: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 required: - counts StoPagination: type: object properties: link: type: string description: Link-based paging example: '' page: type: integer description: Page number (starting from 0) example: 4 format: int64 pageSize: type: integer description: Requested page size example: 20 format: int64 totalItems: type: integer description: Total results available example: 230 format: int64 totalPages: type: integer description: Total pages available example: 12 format: int64 example: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - page - pageSize - totalPages - totalItems PipelineSecurityIssuesResult: type: object properties: counts: $ref: '#/components/schemas/PipelineSecurityCounts' existing: $ref: '#/components/schemas/PaginatedIssueSummaries' matchingSteps: type: array items: $ref: '#/components/schemas/StageStepID' example: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id new: $ref: '#/components/schemas/PaginatedIssueSummaries' description: Data needed by the PipelineSecurityView example: counts: activeIssueCount: 4760424437377198000 existing: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 new: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 remAgentPRClosedCount: 3689607919490948600 remAgentPRMergedCount: 8655811463859900000 remAgentPROpenCount: 823299874961306100 remediated: active: 150 critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 totalActive: 7098987020115862000 totalApp: 7087836362059204000 totalBase: 4778351561759841000 totalDeduplicationRate: 0.11326794 totalExempted: 955771890769839500 totalNoLayer: 5129756543267024000 totalNumOccurrence: 1442763574289890800 totalPartiallyExempted: 3874697277751115000 totalPending: 7032269265141213000 totalRejected: 2360715084851066400 totalRemAgentPRCount: 8772436056804512000 totalRemediated: 8793425704578835000 existing: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 matchingSteps: - parentStageId: stage_id stageId: stage_id stepId: step_id - parentStageId: stage_id stageId: stage_id stepId: step_id new: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - existing - new - counts - matchingSteps ExemptionsFiltersResult: type: object properties: pipelines: type: array items: type: string example: Ipsum explicabo vel. description: List of pipeline IDs with exemptions example: - Omnis qui culpa et quisquam possimus. - Tempore suscipit. - Quia ut illo velit libero omnis. - Deleniti sit enim reprehenderit beatae ut. reasons: type: array items: type: string example: Hic eaque molestiae ut. description: List of exemption reasons example: - Mollitia non qui rerum ipsum. - Et dolor sunt veritatis non at. - Est incidunt aut et voluptas et. - Numquam quo dolor et animi tenetur placeat. scanners: type: array items: $ref: '#/components/schemas/ExemptionFilterScanner' description: List of scanners with exemptions example: - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk targets: type: array items: $ref: '#/components/schemas/ExemptionFilterTarget' description: List of targets with exemptions example: - targetId: target1111111111111111 targetName: my-repo targetType: repository - targetId: target1111111111111111 targetName: my-repo targetType: repository - targetId: target1111111111111111 targetName: my-repo targetType: repository users: type: array items: $ref: '#/components/schemas/ExemptionFilterUser' description: List of all users in the account/scope example: - email: john.doe@example.com name: John Doe userId: user1111111111111111 - email: john.doe@example.com name: John Doe userId: user1111111111111111 - email: john.doe@example.com name: John Doe userId: user1111111111111111 description: Available filters for exemptions example: pipelines: - Sapiente sed fuga alias voluptas aut. - Qui voluptatum nihil perspiciatis natus esse. - Autem sit at aut aut ut aliquam. - Reprehenderit magnam animi et assumenda asperiores tenetur. reasons: - Quis accusantium quos quo totam animi. - Aperiam ea maiores magni. scanners: - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk - scannerId: snyk scannerName: Snyk targets: - targetId: target1111111111111111 targetName: my-repo targetType: repository - targetId: target1111111111111111 targetName: my-repo targetType: repository users: - email: john.doe@example.com name: John Doe userId: user1111111111111111 - email: john.doe@example.com name: John Doe userId: user1111111111111111 required: - targets - pipelines - scanners - users - reasons AllIssuesDetailsResult: type: object properties: description: type: string description: Issue description example: Odio iste labore optio. epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exploitability: type: string description: Aggregate exploitability status of the issue across all impacted targets. 'yes' if any target has exploitable occurrences. example: 'yes' impactedTargets: type: array items: $ref: '#/components/schemas/ImpactedTarget' description: List of Impacted Targets example: - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. inKev: type: boolean description: True when any linked CVE is in the CISA KEV catalog example: true issueType: type: string description: Issue Type example: Libero deleniti aliquid. lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: $ref: '#/components/schemas/StoPagination' reachability: type: string description: Aggregate reachability status of the issue across all impacted targets. 'reachable' if any target has reachable occurrences. example: reachable recentActivities: type: array items: $ref: '#/components/schemas/ExemptionRecentActivity' description: Up to 3 most recent exemption history events for this issue, newest first example: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: type: array items: $ref: '#/components/schemas/RefIds' description: Reference Identifiers example: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: type: string description: Product name of the scan tool used in this step example: owasp severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned targetType: type: string description: Target Type example: Et accusantium quod. title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 example: description: Et vel ipsa ducimus dolorem eos. epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exploitability: 'yes' impactedTargets: - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. - executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable userEmail: user@gmail.com userId: Necessitatibus fugiat voluptas. userName: firstname lastname variantName: Accusamus amet eos ea laborum doloremque qui. inKev: true issueType: Et qui perferendis asperiores qui itaque placeat. lastDetected: 1634836529 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: owasp severityCode: High targetType: Sapiente quibusdam quo nihil tempora. title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' required: - title - description - severityCode - lastDetected - scanTool - targetType - referenceIdentifiers - impactedTargets - pagination AllIssuesDetailsV2Result: type: object properties: aiTriaged: type: string description: Aggregate AI triage verdict. 'LikelyFP' if every occurrence is FALSE_POSITIVE; 'LikelyTP' if any is TRUE_POSITIVE; 'NotEvaluatedYet' if only some are triaged. Field is absent when no occurrence has been triaged yet. example: LikelyFP enum: - LikelyFP - LikelyTP - NotEvaluatedYet aiTriagedReasoning: type: string description: Representative LLM reasoning quoted from one of the per-occurrence triaged verdicts (FP-verdict reasoning preferred). Field is absent when no occurrence has been triaged yet. example: The argument to path.join is __dirname, a constant, not user input. description: type: string description: Issue description example: Maiores vel ut nostrum quidem voluptatum. epssLastModified: type: string description: Last date the issue EPSS data was last modified example: '2025-05-01' epssPercentile: type: number description: EPSS percentile of the issue CVE identifier example: 0.15 format: double epssScore: type: number description: EPSS score of the issue CVE identifier example: 0.035 format: double exemptionStatus: type: string description: Status of project scoped exemption for this issue example: Pending exploitability: type: string description: Aggregate exploitability status of the issue across all impacted targets. 'yes' if any target has exploitable occurrences. example: 'yes' impactedTargets: type: array items: $ref: '#/components/schemas/ImpactedTargetV2' description: List of Impacted Targets example: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. inKev: type: boolean description: True when any linked CVE is in the CISA KEV catalog example: true issueType: type: string description: Issue Type example: Quia aut velit. lastDetected: type: integer description: Timestamp of the last detection of this issue example: 1634836529 format: int64 overrides: type: array items: $ref: '#/components/schemas/OverrideResult' description: List of issue overrides example: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: $ref: '#/components/schemas/StoPagination' reachability: type: string description: Aggregate reachability status of the issue across all impacted targets. 'reachable' if any target has reachable occurrences. example: reachable recentActivities: type: array items: $ref: '#/components/schemas/ExemptionRecentActivity' description: Up to 3 most recent exemption history events for this issue, newest first example: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: type: array items: $ref: '#/components/schemas/RefIds' description: Reference Identifiers example: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: type: string description: Product name of the scan tool used in this step example: owasp severityCode: type: string description: Severity code example: High enum: - Critical - High - Medium - Low - Info - Unassigned status: type: string description: Issue Status example: Remediated enum: - Active - Exempted - Remediated targetType: type: string description: Target Type example: Unde in. title: type: string description: Title of the Security Issue example: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' maxLength: 128 example: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. description: Eaque dolorum qui dolores commodi praesentium id. epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' impactedTargets: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. executionId: abcdef1234567890ghijkl exemptionId: abcdef1234567890ghijkl exemptionStatus: Pending exploitability: 'yes' id: target1111111111111111 lastDetected: 1634836529 name: The Target Name numOccurrences: 10 pipelineId: example_pipeline reachability: reachable status: Remediated userEmail: user@gmail.com userId: Molestiae ad distinctio. userName: firstname lastname variantName: Quis incidunt enim vero quis iusto inventore. inKev: true issueType: Quo dolor tempore et et in. lastDetected: 1634836529 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 reachability: reachable recentActivities: - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired - actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Expired referenceIdentifiers: - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. - id: Consequatur consectetur dignissimos adipisci sunt. type: Est tempora. scanTool: owasp severityCode: High status: Active targetType: Beatae accusamus quam. title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' required: - title - description - severityCode - lastDetected - scanTool - targetType - referenceIdentifiers - impactedTargets - pagination - status HarnessSastScaUsage: type: object properties: totalContributingDevelopers: type: integer description: Total number of contributing developers example: 42 format: int64 description: License usage response data example: totalContributingDevelopers: 42 required: - totalContributingDevelopers TargetVariantStatusInfo: type: object properties: id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ status: type: string description: Associated Target Variant Status example: unapproved pattern: ^(approved|unapproved)$ example: id: abcdef1234567890ghijkl status: unapproved required: - id - status NotFound: type: object properties: message: type: string example: Not Found status: type: integer default: 404 example: 404 format: int64 example: message: Not Found status: 404 required: - message RemediationTrendResult: type: object properties: trend: type: array items: $ref: '#/components/schemas/RemediationTrendPoint' description: Per-execution cumulative new vs remediated occurrence counts, ordered oldest to newest example: - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' example: trend: - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' - cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' required: - trend FrontendExemptionCounts: type: object properties: Approved: type: integer description: The count of approved Exemptions default: 0 example: 150 format: int32 Expired: type: integer description: The count of expired Exemptions default: 0 example: 150 format: int32 Pending: type: integer description: The count of pending Exemptions default: 0 example: 150 format: int32 Rejected: type: integer description: The count of rejected Exemptions default: 0 example: 150 format: int32 example: Approved: 150 Expired: 150 Pending: 150 Rejected: 150 PaginatedIssueSummaries: type: object properties: issues: type: array items: $ref: '#/components/schemas/IssueSummary' description: Diff-ed Issues related to this scan step, resulting from a diff between a scan and its target's latest baseline scan (previous scan if no baseline) example: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: $ref: '#/components/schemas/StoPagination' example: issues: - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST - aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - issues - pagination AllIssuesTrendV2Result: type: object properties: trend: type: array items: $ref: '#/components/schemas/DailyIssueTrend' description: Daily trend data showing issue counts by status example: - active: 10 day: 1710720000 remediated: 5 - active: 10 day: 1710720000 remediated: 5 example: trend: - active: 10 day: 1710720000 remediated: 5 - active: 10 day: 1710720000 remediated: 5 - active: 10 day: 1710720000 remediated: 5 required: - trend FrontendExemption: type: object properties: approverEmail: type: string description: Email of the user who approved this Exemption example: user@harness.io approverId: type: string description: User ID of the user who approved this Exemption example: user111111111111111111 approverName: type: string description: Name of the user who approved this Exemption example: firstname lastname canApproveFor: type: array items: type: string example: PIPELINE enum: - ACCOUNT - ORG - PROJECT - PIPELINE - TARGET description: Scopes that the user has permission to approve for this Exemption example: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: type: boolean description: States if the user can cancel the exemption default: false example: true canCreate: type: boolean description: States if the user can create or reopen the exemption default: false example: true canReApprove: type: boolean description: States if the user can re-approve the exemption for the exemption's scope default: false example: true canReject: type: boolean description: States if the user can reject the exemption default: false example: true created: type: integer description: Unix timestamp at which the resource was created example: 1651578240 format: int64 expiration: type: integer description: Unix timestamp at which this Exemption will expire example: 1651578240 format: int64 id: type: string description: Resource identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ isDeleted: type: boolean description: States if the exemption is deleted default: false example: true isOccurrenceLevelExemption: type: boolean description: States if the exemption is an occurrence level exemption default: false example: true issueSummary: $ref: '#/components/schemas/IssueSummary' lastModified: type: integer description: Unix timestamp at which the resource was most recently modified example: 1651578240 format: int64 link: type: string description: Link related to this Exemption example: Upstream bug numOccurrences: type: integer description: States how may occurrences are associated with the exemption, if not an issue level exemption default: 0 example: 10 format: int64 orgId: type: string description: ID of the Harness Org to which this Exemption applies example: STO orgName: type: string description: Name of the Harness Org to which this Exemption applies example: Organization Name pendingChanges: $ref: '#/components/schemas/PendingChanges' pipelineId: type: string description: ID of the Harness pipeline to which this Exemption applies example: pipeline_1 projectId: type: string description: ID of the Harness project to which this Exemption applies example: STO projectName: type: string description: Name of the Harness project example: Project Name reason: type: string description: Reason for Exemption example: Upstream bug requestedOn: type: integer description: Unix timestamp of the exemption's current request. Updates each time the exemption is reopened; falls back to the original creation time when never reopened. example: 1651578240 format: int64 requesterEmail: type: string description: Email of the user who requested this Exemption example: user@harness.io requesterId: type: string description: User ID of the user who requested this Exemption example: user111111111111111111 requesterName: type: string description: Name of the user who requested this Exemption example: firstname lastname reviewedOn: type: integer description: Unix timestamp when this exemption was reviewed (approved or rejected). Populated only for approved and rejected exemptions. example: 1651578240 format: int64 scope: type: string description: The scope of the exemption example: PROJECT enum: - ACCOUNT - ORG - PROJECT - PIPELINE - TARGET status: type: string description: Status of this Exemption example: Approved targetId: type: string description: ID of Target to which this Exemption applies example: target2222222222222222 targetName: type: string description: Name of Target to which this Exemption applies example: my-target totalOccurrences: type: integer description: States total occurrences associated with the issue exemption default: 0 example: 10 format: int64 type: type: string description: Type of Exemption example: Other description: Exemption summary for frontend use example: approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other required: - id - issueSummary - status - reason - created - type - lastModified - requesterId - pendingChanges SecurityReviewResult: type: object properties: counts: $ref: '#/components/schemas/FrontendExemptionCounts' exemptions: type: array items: $ref: '#/components/schemas/FrontendExemption' description: Security Review data example: - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other pagination: $ref: '#/components/schemas/StoPagination' description: Data needed by the Security Review page example: counts: Approved: 150 Expired: 150 Pending: 150 Rejected: 150 exemptions: - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other - approverEmail: user@harness.io approverId: user111111111111111111 approverName: firstname lastname canApproveFor: - ACCOUNT - ORG - PROJECT - PIPELINE canCancel: true canCreate: true canReApprove: true canReject: true created: 1651578240 expiration: 1651578240 id: abcdef1234567890ghijkl isDeleted: true isOccurrenceLevelExemption: true issueSummary: aiTriaged: LikelyFP aiTriagedReasoning: The argument to path.join is __dirname, a constant, not user input. category: Insecure Direct Object Reference (AI SAST) currentStatus: Approved epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionCoverage: PartiallyExempted exemptionId: abcdef1234567890ghijkl exemptionStatusAtScan: Pending id: abcdef1234567890ghijkl inKev: true isNew: true key: json-schema@0.2.3 lastDetected: 1634836529 numNewOccurrences: 7690074385420956000 numOccurrences: 8900634227584429000 numRemediatedOccurrences: 4770584530773326000 occurrenceInternalId: 12345 originStatus: approved origins: - app - base overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname overridesAtScan: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname remAgentPrNumber: 13114 remAgentPrStatus: Open remAgentPrTitle: '[13114] Security fix' remAgentPrUrl: https://github.com/harness/example/pull/13114 remAgentRepository: harness/nodegoat remAgentSummaryId: 42 scanId: scan111111111111111111 severity: 8.5 severityCode: High status: Remediated targetVariantName: nodegoat:master title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' type: SAST lastModified: 1651578240 link: Upstream bug numOccurrences: 10 orgId: STO orgName: Organization Name pendingChanges: durationDays: 7 pipelineId: pipeline_1 projectId: STO projectName: Project Name reason: Upstream bug requestedOn: 1651578240 requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reviewedOn: 1651578240 scope: PROJECT status: Approved targetId: target2222222222222222 targetName: my-target totalOccurrences: 10 type: Other pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - exemptions - pagination - counts IssueCounts: type: object properties: critical: type: integer description: The number of Critical-severity Issues example: 1 format: int32 high: type: integer description: The number of High-severity Issues example: 3 format: int32 ignored: type: integer description: The number of Issues ignored due to Exemptions, and therefore not included in other counts example: 1 format: int32 info: type: integer description: The number of Informational Issues example: 11 format: int32 low: type: integer description: The number of Low-severity Issues example: 39 format: int32 medium: type: integer description: The number of Medium-severity Issues example: 17 format: int32 newCritical: type: integer description: The number of new Critical-severity Issues example: 1 format: int32 newHigh: type: integer description: The number of new High-severity Issues example: 3 format: int32 newInfo: type: integer description: The number of new Informational Issues example: 11 format: int32 newLow: type: integer description: The number of new Low-severity Issues example: 39 format: int32 newMedium: type: integer description: The number of new Medium-severity Issues example: 17 format: int32 newUnassigned: type: integer description: The number of new Issues with no associated severity code example: 0 format: int32 unassigned: type: integer description: The number of Issues with no associated severity code example: 0 format: int32 description: The count of Security Issues, by severity code, for a given Harness Pipeline Execution example: critical: 1 high: 3 ignored: 1 info: 11 low: 39 medium: 17 newCritical: 1 newHigh: 3 newInfo: 11 newLow: 39 newMedium: 17 newUnassigned: 0 unassigned: 0 required: - critical - high - medium - low - info OverrideResult: type: object properties: created: type: integer description: Unix timestamp at which the resource was created example: 1651578240 format: int64 fieldName: type: string description: Name of the field that is being overridden example: severityCode impactedTargetId: type: string description: ID of the impacted target example: target1111111111111111 originalFieldValue: type: string description: Original value of the field that is being overridden example: Low overrideFieldValue: type: string description: Value of the field that is being overridden example: Low maxLength: 1024 overrideId: type: string description: Override Id of the override example: override1234 reason: type: string description: Text describing why this override is necessary example: Waiting on upstream bug fix maxLength: 1024 requesterEmail: type: string description: Email of the user who requested this Exemption example: user@harness.io requesterId: type: string description: User ID of the user who requested the override example: user111111111111111111 requesterName: type: string description: Name of the user who requested this Exemption example: firstname lastname example: created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname required: - fieldName - originalFieldValue - overrideFieldValue - reason - created AllIssuesFiltersResult: type: object properties: exploitabilityFlag: type: boolean description: Indicates if exploitability analysis is available (true if any scan uses Harness Code) example: true issueCategories: type: array items: type: string example: Nesciunt mollitia iure. description: Distinct non-empty issue categories available for filtering in this project example: - Insecure Direct Object Reference (AI SAST) - SQL Injection latestBaselineScans: type: array items: $ref: '#/components/schemas/LatestBaselineScanInfo' example: - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository reachabilityFlag: type: boolean description: Indicates if reachability analysis is available (true if any scan uses Harness Code) example: true example: exploitabilityFlag: true issueCategories: - Insecure Direct Object Reference (AI SAST) - SQL Injection latestBaselineScans: - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository - pipelineId: pipeline_1 scanTool: owasp scanToolName: OWASP targetId: abcdef1234567890ghijkl targetName: The Target targetType: repository reachabilityFlag: true required: - latestBaselineScans - reachabilityFlag - exploitabilityFlag ExemptionRecentActivity: type: object properties: actorName: type: string description: Display name of commenter. Omitted for auto-expiry. example: Priya Nair created: type: integer description: Unix timestamp (seconds) example: 1781391060 format: int64 id: type: string description: exemption_history.id — pass to Exemption Log drawer as selectedEventId example: hist111111111111111111 pattern: ^[a-zA-Z0-9_-]{22}$ isAutoExpiry: type: boolean description: True when status=Expired and commenter_id IS NULL default: false example: false status: type: string example: Expired enum: - Pending - Approved - Rejected - Expired - Canceled description: Compact exemption history preview for issue detail panels example: actorName: Priya Nair created: 1781391060 id: hist111111111111111111 isAutoExpiry: false status: Pending required: - id - status - created - isAutoExpiry RemediationTrendPoint: type: object properties: cumulativeNew: type: integer description: Cumulative new (open) occurrences as of this execution example: 5 format: int64 cumulativeRemediated: type: integer description: Cumulative remediated occurrences as of this execution example: 2 format: int64 executionId: type: string description: Harness execution ID example: exec-0001 timestamp: type: string description: ISO-8601 timestamp when the execution started example: '2025-07-30T02:32:00.000Z' description: Cumulative new vs remediated occurrence counts for a single execution example: cumulativeNew: 5 cumulativeRemediated: 2 executionId: exec-0001 timestamp: '2025-07-30T02:32:00.000Z' required: - executionId - timestamp - cumulativeNew - cumulativeRemediated RemediationAgentActivity: type: object properties: buildId: type: string description: pr_metadata.BuildId from post-plugin example: '4' commits: type: integer description: pr_metadata.CommitsCount from post-plugin example: 3 format: int64 createdAt: type: string description: RFC3339 remediation_agent_summary.created example: '2026-07-04T12:45:00Z' format: date-time executionId: type: string description: Pipeline execution id of original_scan_id (for PSI V2) example: execution1111111111111 pattern: ^[a-zA-Z0-9_-]{22}$ fixVerified: type: string description: Mapped validation_metadata.remediation.status example: success enum: - success - failure - unverified id: type: string description: remediation_agent_summary.internal_id as string (remAgentSummaryId) example: '42' jiraTicketId: type: string example: STO-87236 jiraTicketUrl: type: string example: https://jira.example.com/browse/STO-87236 prNumber: type: integer example: 13114 format: int64 prTitle: type: string example: '[13114] Security fix' prUrl: type: string example: https://github.com/harness/example/pull/13114 regression: type: string description: Mapped validation_metadata.build.status example: success enum: - success - failure - unverified repository: type: string example: harness/nodegoat scanId: type: string example: scan111111111111111111 pattern: ^[a-zA-Z0-9_-]{22}$ sourceBranch: type: string example: remediation/sast-13114 status: type: string description: PR status for View Remediations (Open|Merged|Closed; synced by background task into pr_metadata) example: Open enum: - Open - Merged - Closed targetBranch: type: string example: master description: One remediation-agent PR activity for the View Remediations drawer example: buildId: '4' commits: 3 createdAt: '2026-07-04T12:45:00Z' executionId: execution1111111111111 fixVerified: success id: '42' jiraTicketId: STO-87236 jiraTicketUrl: https://jira.example.com/browse/STO-87236 prNumber: 13114 prTitle: '[13114] Security fix' prUrl: https://github.com/harness/example/pull/13114 regression: success repository: harness/nodegoat scanId: scan111111111111111111 sourceBranch: remediation/sast-13114 status: Open targetBranch: master required: - id - scanId - executionId - repository - prNumber - prTitle - prUrl - status - commits - sourceBranch - targetBranch - buildId - createdAt - fixVerified - regression AllIssuesListV2Result: type: object properties: hasRules: type: boolean description: Whether the account has at least one exemption rule. When false, clients can skip exemption rule evaluation (no rule-eval loaders). example: true issues: type: array items: $ref: '#/components/schemas/AllBaselineIssueSummary' description: Issues from the pre-aggregated summary table for the latest baseline scans in a project example: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: $ref: '#/components/schemas/StoPagination' example: hasRules: true issues: - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' - aiTriaged: LikelyFP epssLastModified: '2025-05-01' epssPercentile: 0.15 epssScore: 0.035 exemptionStatus: Pending exploitability: 'yes' id: abcdef1234567890ghijkl issueType: Commodi quo suscipit ducimus quibusdam enim dolor. lastDetected: 1634836529 numOccurrences: 12 numTargetsImpacted: 2 overrides: - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname - created: 1651578240 fieldName: severityCode impactedTargetId: target1111111111111111 originalFieldValue: Low overrideFieldValue: Low overrideId: override1234 reason: Waiting on upstream bug fix requesterEmail: user@harness.io requesterId: user111111111111111111 requesterName: firstname lastname reachability: reachable severityCode: High status: Exempted title: 'Semgrep Finding: generic.secrets.security.detected-bcrypt-hash.detected-bcrypt-hash' pagination: link: '' page: 4 pageSize: 20 totalItems: 230 totalPages: 12 required: - issues - pagination - hasRules UpdateTestTargetVariantsRequestBody: type: object properties: targetVariants: type: array items: $ref: '#/components/schemas/TargetVariantStatusInfo' description: List of target variants with their status example: - id: abcdef1234567890ghijkl status: approved - id: xyz987zyx654wvu321tsr9 status: unapproved minItems: 1 maxItems: 100 example: targetVariants: - id: abcdef1234567890ghijkl status: approved - id: xyz987zyx654wvu321tsr9 status: unapproved ExecutionTrendResult: type: object properties: trend: type: array items: $ref: '#/components/schemas/ExecutionTrendPoint' description: Per-execution occurrence severity counts, ordered oldest to newest example: - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 example: trend: - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 - executionId: abcdef1234567890ghijkl executionSource: PIPELINE executionStartedAt: 1710720000 executionUrl: https://app.harness.io/ng/#/account/abc/ci/... issueTypes: SAST: 10 SCA: 5 severities: critical: 1 high: 2 info: 5 low: 4 medium: 3 required: - trend StageStepID: type: object properties: parentStageId: type: string description: The stageId of the stage in parent pipeline which runs this scan from chain pipeline example: stage_id stageId: type: string example: stage_id stepId: type: string example: step_id example: parentStageId: stage_id stageId: stage_id stepId: step_id required: - stageId - stepId CreateTicketForIssueResult: type: object properties: externalId: type: string description: External ticket key from provider example: ABC-1234 id: type: string description: Stored ticket identifier example: abcdef1234567890ghijkl pattern: ^[a-zA-Z0-9_-]{22}$ url: type: string description: External ticket URL example: https://example.atlassian.net/browse/ABC-1234 example: externalId: ABC-1234 id: abcdef1234567890ghijkl url: https://example.atlassian.net/browse/ABC-1234 required: - id securitySchemes: x-api-key: name: x-api-key type: apiKey in: header description: API key is a token provided while making the API calls. This is used to authenticate the client at the exposed endpoint. externalDocs: description: Find out more about Swagger url: http://swagger.io x-stoplight: id: oc91t4vrfnjyi x-tagGroups: - name: Organizations tags: - Organization - name: Projects tags: - Org Project - Project - name: Secrets tags: - Account Secret - Org Secret - Project Secret - Secrets - name: Connectors tags: - Account Connector - Org Connector - Project Connector - Connectors - GoogleSecretManagerConnector - name: Roles tags: - Account Roles - Organization Roles - Project Roles - Roles - name: Resource Groups tags: - Account Resource Groups - Organization Resource Groups - Project Resource Groups - Filter Resource Groups - Harness Resource Group - Zendesk - name: Role Assignments tags: - Account Role Assignments - Org Role Assignments - Project Role Assignments - Role Assignments - name: Platform tags: - Access Control List - Account Banner - Account Banner - Account Licensed Modules - Account License Type - Account Webhooks - AccountSetting - Accounts - Analyze Account Access Policy - Analyze Organization Access Policy - Analyze Project Access Policy - ApiKey - Audit - AuditFilters - Authentication Settings - Canny - Devops Essentials License Data By Account - EULA - Filter - Harness Resource Type - Invite - IP Allowlist - Nextgen Ldap - Notification Channels - Notification Rules - OIDC - Oidc-Access-Token - Oidc-ID-Token - Org Webhooks - Permissions - Project Webhooks - Secret Managers - Service Account - Setting - SMTP - Source Code Manager - Token - User - User Group - Variables - name: Delegate tags: - Agent mTLS Endpoint Management - Delegate Download Resource - Delegate Group Tags Resource - Delegate Setup Resource - Delegate Token Resource - name: Pipelines tags: - Pipelines - Input Sets - Approvals - Pipeline Execution - Pipeline Dashboard - Pipeline Input Set - Pipeline - Pipeline Execution Details - Pipeline Execute - Pipeline Refresh - Pipeline data retention - Triggers - TriggersEvents - Webhook Triggers - Webhook Event Handler - DryRunPipeline - name: Artifact Registry tags: - Registries - Artifacts - Docker Artifacts - Helm Artifacts - quarantine - Webhooks - Spaces - Replication - Registry V3 - Registries - Registry V3 - Packages - Registry V3 - Versions - Registry V3 - Files - Registry V3 - Metadata - Registry V3 - Firewall - Registry V3 - Transfer - name: Database DevOps tags: - Database Schema - Database Instance - Deployed State - Execution Config - Migration State - name: CD tags: - K8s Release Service Mapping - CustomDeployment - Environments - EnvironmentGroup - Infrastructures - Usage - File Store - Service Dashboard - ServiceOverrides - Rollback - tas - name: Deployment Freeze tags: - Freeze CRUD - Freeze Evaluation - Freeze Schema - name: Services tags: - Account Services - Org Services - Project Services - Services - name: Rancher Infrastructures tags: - Account Rancher Infrastructure - Org Rancher Infrastructure - Project Rancher Infrastructure - name: Templates tags: - Account Template - Org Template - Project Template - Templates - Global Templates - name: GitOps tags: - Agents - Application - Applications - Certificates - Clusters - Dashboard Aggregates - Dashboards - GnuPGP Keys - GPG Keys - Hosts - Project mappings - Projects - Reconciler - Repositories - Repository Certificates - Repository credentials - ValidateHost - name: GitX tags: - GitX Webhooks - Org Gitx Webhooks - Project Gitx Webhooks - name: CACM tags: - Anomalies Ignorelist Rule - Anomalies - BI Dashboards - Budgets - Budget Groups - Cost Categories - Cloud Accounts - K8S Connectors Metadata - Notification Settings v2 - Overview - Data Job Status - Recommendation cost settings - Unit Metric - Anomaly Comments - Cloud and AI cost anomaly details - Cloud and AI cost anomalies v2 - Cost Details - Currency Preferences - External Data Provider - AiEngine - CACM governance cost settings - Governance Enforcement Recommendation APIs - Governance Alert - Governance Overview - Governance Recommendation APIs - RuleEnforcement - Rule Executions - Rule - Rule Sets - Perspectives Folders - Perspective Reports - Perspectives - Cost Category Jira Project Mapping - Recommendations Details - Recommendations - Recommendation Jira - Recommendation Preferences - Recommendation Presets - Recommendation Servicenow - Recommendation Tags - Recommendation Ignore List - AutoStopping Rules - AutoStopping Rules V2 - AutoStopping Load Balancers - AutoStopping Fixed Schedules - AutoStopping Alerts - Commitment Orchestrator Events APIs - name: Feature Flags tags: - API Keys - Feature Flags - Targets - Target Groups - Environment Perspectives - Anomalies - Proxy - Tags - name: SRM tags: - Monitored Services - SLOs dashboard - NG SLOs - SLOs - Downtime - Srm Notification - name: Internal Developer Portal - IDP tags: - Entities - Teams - CatalogCustomProperties - Scores - DataSource - KubernetesDataPoints - AggregationRules - AppConfig - PluginInfo - LayoutProxy - Kinds - LayoutsV3 - LayoutsV4 - name: Environment Management - IDP tags: - Environment - Infrastructure - Instance - name: Custom Dashboards tags: - aida - dashboards - downloads - embed - folders - name: Policy Management tags: - dashboard - examples - policies - evaluate - evaluations - policysets - system - name: Code tags: - repository - status_checks - pullreq - upload - webhook - resource - rules - labels - name: IaCM tags: - usage - approvals - costs - executions - module-registry - workspaces - settings - tf-standard-backend - variables - name: STO tags: - Exemptions - Issues - Scans - Products - Test Targets - Target Variants - name: SEI tags: - Collection categories - Collections - Contributors - DORA - name: Git Sync (deprecated) tags: - Git Branches - Git Full Sync - Git Sync Settings - Git Sync - Git Sync Errors - name: Error Models tags: - Error Response - Governance Metadata - name: Supply Chain Security tags: - integration - PipelineInfraConfig - SBOM - Integration Step Config - Delete Step Config - Delete Repositories - Pipeline Store Config - Evidence Vault [Beta] - name: Release Management tags: - Release Groups - Releases - Orchestration Processes - Orchestration Activities - Orchestration Executions - Conflicts - Freeze - Reports - Uploads - name: Resilience Testing tags: - Actions - Action Templates - Chaos Components - Chaos Hubs - ChaosGuard Conditions - ChaosGuard Rules - DR Tests - Experiments - Experiment Templates - Faults - Fault Templates - Chaos Infrastructure - Health - Network Maps - Onboarding - Probes - Probe Templates - Chaos Recommendations - Risks