Home / Companies / Socket / Blog / Post Details
Content Deep Dive

Announcing New Default Security Policies

Blog post from Socket

Post Details
Company
Date Published
Author
Philipp Burckhardt
Word Count
1,326
Company Posts That Month
15
Language
English
Hacker News Points
-
Post removed?
No
Summary

Socket has introduced three new customizable default security policies—Low Noise, Default, and Higher Noise—designed to offer organizations increased flexibility in managing dependency security through a range of alert actions: Block, Warn, Monitor, and Ignore. These policies aim to reduce alert noise, manage false positives more effectively, and enable new alert types previously disabled, with a focus on CVE monitoring and comprehensive supply chain risk management. The policies are set to become available on August 28, 2024, allowing organizations a two-week transition period from August 14 to review changes and maintain their existing settings if desired. The Low Noise policy focuses on CVEs and malicious dependencies, the Default policy balances security with minimal disruption, and the Higher Noise policy is for more engaged teams with extensive monitoring and alerts. Socket's new alert system allows alerts to either inherit the default policy actions or be set explicitly, providing precise control over notifications.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.