For general information & instructions on the use of Remote Providers within ThreadFix, please refer to this page's parent page: Remote Providers.
For information on REST API functionality for Remote Providers, please refer to the following: Remote Providers API
Finding Status Processing
The following list indicates how finding statuses from Fortify are marked within ThreadFix when ingesting a scan:
- Not an issue - False Positive
- Exploitable or Need more information - Open
- Hidden or Suppressed - not ingested into ThreadFix
- Fixed findings are considered closed and are not ingested into ThreadFix
We will update this page at a future time with more details on the Remote Provider integration with this specific scanning tool.
If you have any questions, please reach out to support@threadfix.it.