Skip to main content

Mitigation guidance

When Guard identifies a supply-chain risk, it provides mitigation guidance to help you resolve the issue quickly. This guide explains how to read and act on mitigation recommendations.

How mitigation guidance worksDirect link to How mitigation guidance works

Each advisory or warning in Guard includes a Mitigation section with actionable steps. The guidance is tailored to the specific risk type:

Risk typeTypical mitigation
Known vulnerabilityUpgrade to a patched version or apply a workaround
Suspicious publisherVerify publisher identity and consider blocklisting
Policy violationReview the policy rule and adjust or add an exception
Revoked toolRemove the tool from your environment immediately
Unverified provenanceRequire provenance attestation before allowing the tool

Acting on guidanceDirect link to Acting on guidance

  1. Open the investigation in Guard alerts.
  2. Review the Mitigation section for the specific alert.
  3. Follow the recommended steps in order.
  4. Mark the investigation as resolved once the mitigation is applied.

ExceptionsDirect link to Exceptions

If a mitigation step is not applicable to your environment, you can file an exception. Exceptions are time-limited and auditable.

  1. Open the investigation.
  2. Select File exception.
  3. Provide a reason and select an expiration date.
  4. Submit for review by a workspace admin.

See it in productDirect link to See it in product

Next guidesDirect link to Next guides