> For the complete documentation index, see [llms.txt](https://developer.harness.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://developer.harness.io/security-testing-orchestration/use-sto/sto-chatbot/sto-chatbot.md).

# AppSec Chatbot

Learn about the AppSec STO Chatbot

The AppSec Chatbot in Harness STO lets you explore STO data using natural language. Instead of navigating multiple dashboards or applying several filters, you can ask questions like "List all the issues of type `secret`in the project".

The AppSec chatbot retrieves the relevant information from STO and responds in an easy-to-read format.

### Scope <a href="#scope" id="scope"></a>

* The AppSec Chatbot in STO is currently scoped to the project level, and cross-project queries are not supported. The chatbot can answer queries related to STO issues, pending exemptions, approved or rejected exemptions, and issue level insights.
* If a question is not related to Harness STO, you'll see the message: "The query is not related to Harness, as it is outside the scope of Harness functionalities."

{% hint style="info" %}
**PREREQUISITES & SUPPORT**

* Make sure you enable the Harness AI at the account level settings.
* Currently, the AppSec Chatbot is not supported on SMP.
  {% endhint %}

### Sample Questions <a href="#sample-questions" id="sample-questions"></a>

The following are some examples of the types of questions you can ask the AppSec Chatbot along with sample responses:

* Tell me the exemptions raised by the developers that needs to be reviewed.
* Approve all pending exemptions in this project of issue type `secret`.
* List all the issues of severity `High` in the project.

<figure><img src="https://2033425938-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fna57sNwixrWxOX8cOMRg%2Fuploads%2Fgit-blob-123802ea78a60a2ed13e8fef3c8bc97c69041601%2Fsto-chatbot.png?alt=media" alt=""><figcaption><p>Click to view full-size image</p></figcaption></figure>

### Caveats <a href="#caveats" id="caveats"></a>

The AppSec chatbot displays up to 10 results by default for readability. For larger datasets, refine your query to narrow the output (for example: List me the next 10 issues of issue type `SCA`).

### Feedback Mechanism <a href="#feedback-mechanism" id="feedback-mechanism"></a>

Each response supports feedback so you can help improve the model:

**Thumbs Up** - Positive feedback.\
**Thumbs Down** - Opens a comment box where you can describe what went wrong or what you expected.

Feedback signals are used by Harness to enhance future model versions.

{% @harness-feedback/feedback %}
