Skip to content

Design: Enhanced User-based Security Center

Everyone can contribute. Help move this issue forward while earning points, leveling up and collecting rewards.

Background:

In this issue: #284337 we began exploring concepts around assigning vulnerabilities to users. In that effort, we quickly realized that we need a place to display assigned vulnerabilities at the user level. Simultaneously we verified that what we once called the Security Center (Global Nav / More / Security) was actually a user scoped area, and not a root-group/instance view. This means that each user can have a unique set of data in the Security Center based on their access to groups and projects. Armed with this knowledge we wanted to connect the dots between being assigned to a vulnerability, see a list of vulnerabilities you are assigned to, and accurately positioning the Security center to My security center (or something similar).

2024-03-06 update: If we convert vulnerabilities into work items, we would also get the benefit of assignees and to dos. Furthermore, the user would be able to filter by Type > Vulnerabilities here:

Screenshot 2024-03-06 at 4.02.58 PM.png

User:

Persona: Security Analyst

Problem:

Solution:

Restrictions:

This area will be limited to users with GitLab Ultimate and permission to view vulnerabilities.

Edited by 🤖 GitLab Bot 🤖