Risk Notifications

This ability is limited to team members with Admin and/or Member roles.

Manifest scans various vulnerability databases at least daily to identify new vulnerabilities or risks your software. With notifications, Manifest can alert you when new vulnerabilities or risks are identified in SBOMs that you have previously uploaded.

Setting Up Email Alerts

  1. Go to Settings, and then select the Notifications tab.
  2. Toggle "Vulnerability Notifications" to ON, to configure your alert settings:
    • Set minimum CVSS severity score
    • Choose minimum number of impacted assets

This means that Manifest will only notify you about vulnerabilities that have the specified minimum CVSS score and that affect a minimum number of assets.