doc/user/application_security/security_inventory/_index.md
{{< details >}}
{{< /details >}}
{{< history >}}
security_inventory_dashboard. Enabled by default.security_inventory_dashboard removed.{{< /history >}}
Use the security inventory to visualize which assets you need to secure and understand the actions you need to take to improve security. A common phrase in security is, "you can't secure what you can't see." The security inventory provides visibility into the security posture of your organization's top-level groups, helps you identify coverage gaps, and enables you to make efficient, risk-based prioritization decisions.
The security inventory shows:
Track the development of the security inventory in epic 16939. Share your feedback as development continues on this feature.
Prerequisites:
To view the security inventory:
{{< history >}}
security_inventory_filtering. Enabled by default.{{< /history >}}
[!flag] The availability of this feature is controlled by a feature flag. For more information, see the history.
You can filter projects in the security inventory to focus on specific areas of interest. The following filters are available:
critical vulnerabilities ≥ 10.Advanced SAST = enabled.These filters help you narrow down results in large inventories and make it easier to identify projects that require immediate attention.
When working with the security inventory, you might encounter the following issues:
Some users do not have the required permissions to access the Security inventory menu item. The menu item only displays for groups when the authenticated user has the Security Manager, Developer, Maintainer, or Owner role.