Overview

Vulnerability Detection

The LFX Security tool will scan your open source project code to detect any vulnerabilities in it. The LFX Security tool provides automated scanning to detect potential vulnerabilities and weaknesses, proposing recommended fixes where available to help projects address top security concerns to the open source project.

Roles and Permissions for LFX Security

The following table provides various roles and their respective permissions for LFX Security:

RoleFull AccessView AccessSettings AccessDismiss VulnerabilityActions for Code SecretsNotification for Non Inclusive Language

Community Program Manager

Yes

Yes

Yes

No

No

No

Project Manager

Yes

Yes

Yes

No

No

No

Project Maintainer

Yes

Yes

Yes

Yes

Yes

Yes

Project (GitHub) Contributor

Yes

Yes

Yes

Yes

Yes

Yes

Company Employee (Member)

No

Yes

No

No

No

No

The following points explain ail about various permissions that are mentioned in the above table:

  • Full Access - Full Access permission allows to

    • View all tabs

    • Access to PCC (Project Control Center) to manage Vulnerabilities

    • View access to all tabs without access to PCC

  • Settings Access - Settings Access permission allows to

    • Access to PCC to manage Vulnerabilities,

  • Dismiss Vulnerability - Dismiss Vulnerability allows you to dismiss vulnerabilities detected in the project code if you feel that the detected vulnerability issue cannot be fixed.

Last updated

Copyright © 2022 The Linux Foundation®. All rights reserved. The Linux Foundation has registered trademarks and uses trademarks.