What problem does it solve?
This Skill reduces noisy vulnerability scan results by tuning scanner settings, validating severity with CVSS 4.0, and classifying findings using CWE so security output becomes reliable and auditable.
Core Features & Use Cases
- False positive identification: Detects common FP patterns (version/banner/protocol/OS/container layer mismatches) and validates findings with independent evidence.
- Scan policy optimization: Recommends plugin/check selection, exclusions, intensity/performance settings, and authenticated vs unauthenticated tradeoffs.
- Severity override with guardrails: Applies justified CVSS 4.0 Environmental metric adjustments per asset+CVE, with quarterly re-evaluation.
- Cross-scanner correlation: Correlates findings across multiple scanners using CVE-first normalization and confidence scoring.
Quick Start
Tune your scanner configuration and produce a Scanner Tuning Report with false positive analysis, recommended policy changes, and severity override documentation for the target you provide.