Scanner
Upload Terraform workspace
Baselines
Org-wide baseline lifecycle
{% for baseline in baselines %}
{% endif %}
{{ baseline.name }}
version={{ baseline.version }} · policies={{ baseline.policy_ids | length }} · approved={{ baseline.approved }}
{% if not baseline.approved %}
{% endif %}
{% endfor %}
Authoring
Create enterprise policy
Enforcement
Bind policies to orgs, groups, or repos
{% for binding in bindings %}
{{ binding.target_type }}:{{ binding.target }}
policies={{ binding.policy_ids | length }} · baselines={{ binding.baseline_ids | length }}
{% if binding.parent %} · parent={{ binding.parent }}{% endif %}
{% endfor %}
{% endif %}
Resolve
Preview effective policies
Exceptions
Policy waivers
{% for waiver in waivers %}
{% endfor %}
{% else %}
{{ waiver.rule_id }} · {{ waiver.owner }}
{{ waiver.status }} · expires {{ waiver.expires_at }}
{{ waiver.reason }}
{% if waiver.path %}path={{ waiver.path }}{% endif %}
{% if waiver.status == "requested" %}
{% endif %}
{% if waiver.status != "revoked" %}
{% endif %}
No policy waivers have been requested.
{% endif %}Resolved enforcement
{{ resolved.target_type }}:{{ resolved.target }}
Bindings{{ resolved.binding_targets | join(", ") or "none" }}
Baselines{{ resolved.baseline_ids | join(", ") or "none" }}
Policies{{ resolved.policy_ids | length }}
Target{{ resolved.target }}
{% for policy in resolved.policies %}
{{ policy.rule_id or "none" }} · {{ policy.name }}
{{ policy.status }} · {{ policy.severity }}
{% endfor %}
{% else %}
No policies resolved for this target.
{% endif %}Default rule detail
{{ selected_default_rule.name }}
Rule ID{{ selected_default_rule.rule_id }}
SourceDefault catalog
StatusActive
Risk{{ selected_default_rule.risk }}
{{ selected_default_rule.name }} is enforced by the built-in scanner rule catalog. Recommended remediation: {{ selected_default_rule.remediation }}
Policy detail
{{ selected_policy.name }}
Rule ID{{ selected_policy.rule_id or "unmapped" }}
Scope{{ selected_policy.scope }}
Severity{{ selected_policy.severity }}
Owner{{ selected_policy.metadata.owner or "unassigned" }}
Standard{{ selected_policy.metadata.standard or "none" }}
Control{{ selected_policy.metadata.control_id or "none" }}
Preview
Validate this policy before approval
Policy preview
{{ preview.policy_name }}
{{ preview.summary.findings }}Total
{{ preview.summary.high }}High
{{ preview.summary.medium }}Medium
{{ preview.summary.low }}Low
-
{% for finding in preview.findings %}
- {{ finding.severity }} {{ finding.rule_id }} {{ finding.path }} {% if finding.waiver_id or (finding.detail and finding.detail.waiver) %} Waived by {{ finding.waiver_id or finding.detail.waiver.id }} until {{ finding.waiver_expires_at or finding.detail.waiver.expires_at }} {% endif %} {% if finding.suggested_fix %} {{ finding.suggested_fix }} {% endif %} {% endfor %}
No findings matched this policy rule ID in the uploaded files.
{% endif %}Intelligent evaluation
{{ report.scanned_path }}
Risk profile
{% if intelligence.profile %}
{{ intelligence.profile.name }}
{% else %}
No profile matched
{% endif %}
Context
{{ intelligence.context.environment or "any" }} ·
{{ intelligence.context.risk_tier or "any" }}
Adjustments
{{ intelligence.adjustments | length }}
Suggested fixes
{{ intelligence.recommendations | length }}
{% for adjustment in intelligence.adjustments %}
{{ adjustment.rule_id }} raised from {{ adjustment["from"] }} to {{ adjustment.to }}
{% if adjustment.path %}at {{ adjustment.path }}{% endif %}
{% endfor %}
{% endif %}
{% endif %}
{{ report.summary.findings }}Total
{{ report.summary.high }}High
{{ report.summary.medium }}Medium
{{ report.summary.low }}Low
-
{% for finding in report.findings %}
- {{ finding.severity }} {{ finding.rule_id }} {{ finding.path }} {% if finding.waiver_id or (finding.detail and finding.detail.waiver) %} Waived by {{ finding.waiver_id or finding.detail.waiver.id }} until {{ finding.waiver_expires_at or finding.detail.waiver.expires_at }} {% endif %} {% if finding.suggested_fix %} {{ finding.suggested_fix }} {% endif %} {% endfor %}