Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Approval workflow configurations for unassign request

You can design the approval workflow for the removal of assignments from vulnerable items (VIs, VITs), remediation tasks, application vulnerable items (AVITs), and container vulnerable items (CVITs) for you and your group.

VIT, remediation task, AVIT, and CVIT have a default approval rule each. Each approval rule has a default approval configuration. Each approval configuration has a default approver level. The approval rules for VITs, remediation task, AVIT, and CVIT are enabled by default. As an admin, you can perform the following actions by navigating to All > Vulnerability Response > My Approvals > Approval Rules and selecting the appropriate approval rule.

  • enable or disable an approval rule.
  • create and update an approval configuration.
  • define conditions for vulnerable items and remediation tasks for which the approval rules apply.
  • create and update multiple approver levels.

The following table shows the default approval rules, approval configurations, and approver levels for a VIT, remediation task, AVIT, and CVIT which are shipped with the base system.

You can design the approval workflow for the removal of assignments from vulnerable items (VIs, VITs), remediation tasks, application vulnerable items (AVITs), and container vulnerable items (CVITs) for you and your group.

TypeApproval RuleApproval configurationApprover levels
VIT or VIVulnerable item field change requestVulnerable item field change requestLevel-1 Unassign Request for VI
Remediation taskVulnerability Group field change requestVulnerability field change requestLevel 1 - Unassign Request for VG
AVITApplication vulnerable item field change requestApplication vulnerability field change requestUnassign app vulnerability item
CVITApproval for container managementDefault Configuration Unassign CVITCVIT unassign approval level - 1

For more information on how to approve unassign requests, see Approve or reject an unassign request in Vulnerability Response.

Parent Topic:Configure rules to manage findings