Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Configuring Container Vulnerability Response

Before you run Container Vulnerability Response in your ServiceNow AI Platform instance, you must configure it.

  • Install Vulnerability Response and Configuration Compliance for Containers
    Before you run the Vulnerability Response and Configuration Compliance for Containers application in your ServiceNow AI Platform instance, you must get entitlement and download the application from the ServiceNow® Store. Install the application on your ServiceNow AI Platform instance, and complete a few installation steps in the Setup Assistant.
  • Configuring container image granularity keys for Container Vulnerability Response
    You can configure the keys that generate Container Vulnerability Response findings (container vulnerable items) to help you determine how and when they are created from imported container vulnerability data.
  • Define Container Vulnerability Response email notifications
    Set up email notifications to share useful information about important updates and activities such as approval and rejection of false-positive requests. Creating an email notification involves specifying when to send it, who receives it, and what it contains.
  • Configure Exception Management for Container Vulnerability Response
    Limit the duration of an exception requested and add a questionnaire to the exception or false positive request using the Container Vulnerability Response module. By default, an exception is requested using the ServiceNow® Container Vulnerability Response module. You can also request an exception using the GRC: Policy and Compliance Management integration.
  • Quick start tests for Container Vulnerability Response
    Validate that Container Vulnerability Response still works after you make any configuration change such as apply an upgrade or develop an application. Copy and customize these quick start tests to pass when using your instance-specific data.