Commit 19bf225
docs: document DD_EDITABLE_MITIGATED_DATA and hide ignored close-finding fields (#15259)
Audit and document the DD_EDITABLE_MITIGATED_DATA setting, which gates editing
of a finding's mitigated date / mitigated by. Editing requires both the flag
enabled and a superuser (via can_edit_mitigated_data), and is off by default
because backdating a mitigation can distort SLA-compliance metrics.
- Add an "Editing the Mitigated Date and Mitigated By" section to the Editing
Findings docs covering the default-off behavior, the superuser requirement,
the SLA-backdating trade-off, the audit trail, the restart requirement, and a
Cloud/Pro contact-support note.
- Expand the settings.dist.py comment to note the superuser gate, UI+API scope,
SLA rationale, and restart requirement.
- Hide the mitigated / mitigated_by fields on CloseFindingForm when the setting
is disabled, mirroring FindingForm, so users are no longer shown a Mitigated
date input whose value is silently ignored on close.
- Add a default-off test covering the hidden fields and that a backdated
mitigated value is ignored (finding closes with the current date).
Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>1 parent f5bd12e commit 19bf225
4 files changed
Lines changed: 82 additions & 1 deletion
File tree
- docs/content/triage_findings/findings_workflows
- dojo
- finding/ui
- settings
- unittests
Lines changed: 11 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
37 | 37 | | |
38 | 38 | | |
39 | 39 | | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
40 | 51 | | |
41 | 52 | | |
42 | 53 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
921 | 921 | | |
922 | 922 | | |
923 | 923 | | |
| 924 | + | |
| 925 | + | |
| 926 | + | |
| 927 | + | |
| 928 | + | |
924 | 929 | | |
925 | 930 | | |
926 | 931 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
212 | 212 | | |
213 | 213 | | |
214 | 214 | | |
215 | | - | |
| 215 | + | |
| 216 | + | |
| 217 | + | |
| 218 | + | |
216 | 219 | | |
217 | 220 | | |
218 | 221 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
93 | 93 | | |
94 | 94 | | |
95 | 95 | | |
| 96 | + | |
| 97 | + | |
| 98 | + | |
| 99 | + | |
| 100 | + | |
| 101 | + | |
| 102 | + | |
| 103 | + | |
| 104 | + | |
| 105 | + | |
| 106 | + | |
| 107 | + | |
| 108 | + | |
| 109 | + | |
| 110 | + | |
| 111 | + | |
| 112 | + | |
| 113 | + | |
| 114 | + | |
| 115 | + | |
| 116 | + | |
| 117 | + | |
| 118 | + | |
| 119 | + | |
| 120 | + | |
| 121 | + | |
| 122 | + | |
| 123 | + | |
| 124 | + | |
| 125 | + | |
| 126 | + | |
| 127 | + | |
| 128 | + | |
| 129 | + | |
| 130 | + | |
| 131 | + | |
| 132 | + | |
| 133 | + | |
| 134 | + | |
| 135 | + | |
| 136 | + | |
| 137 | + | |
| 138 | + | |
| 139 | + | |
| 140 | + | |
| 141 | + | |
| 142 | + | |
| 143 | + | |
| 144 | + | |
| 145 | + | |
| 146 | + | |
| 147 | + | |
| 148 | + | |
| 149 | + | |
| 150 | + | |
| 151 | + | |
| 152 | + | |
| 153 | + | |
| 154 | + | |
| 155 | + | |
| 156 | + | |
| 157 | + | |
96 | 158 | | |
97 | 159 | | |
98 | 160 | | |
| |||
0 commit comments