Example: Filtering and excluding APIs

A common triage scenario might occur early in the triage process when you want to prioritize your findings and there are certain findings that you want to exclude. For example, you determine that three APIs are not threats and you would like to exclude these APIs from subsequent scans.

Procedure

  1. In the Filter Editor, in the API section, click Add and select three APIs.
  2. Select Restrict to.
  3. Save and name the filter.
  4. Return to the Configuration perspective and, in the Explorer view, select the project (or application).
  5. In the Properties view, set the behavior of the filter to Inverted (in the Select Filter dialog box, select Invert filter).
  6. Scan again. The APIs in the filter no longer appear in the findings.

Results

Using the same example, you may only want to see the findings that are included in the filter. In this instance, when adding the filter to the list, do not select Invert filter. When you scan again, only the findings in the filter appear.