Feature
Governed ignores with Ignore Approval Workflow
Snyk Code findings can now be suppressed through an Ignore Approval Workflow that requires review, preventing developers from silently ignoring vulnerabilities without security team oversight.
Until now, a developer could suppress a Snyk Code finding on their own — directly in the Web UI or IDE — with no review step.
Suppression happened silently and unilaterally, leaving security teams without a gate on what got ignored.
snyk-codegovernancesecurityworkflow
Source: original entry ↗