For the complete documentation index, see llms.txt. This page is also available as Markdown.

Targets, variants, and baselines in STO

What to scan - repo/branch, image/tag, app/version, and baseline (root) element.

This topic discusses the following STO topics:

Targets

Variants

Baselines

Is an issue unique to the variant or common to the baseline?

Every STO pipeline execution has a Vulnerabilities tab with separate lists of issues that make it easy to determine

  • Issues only in the variant.

  • Issues common to the variant and the baseline.

If you scanned the baseline, or the baseline isn't defined, you'll see

  • New issues only in the current scan (first list).

  • Old issues common to the previous scan (second list).

Every target needs a baseline

Last updated

Was this helpful?