AI Insight Using Polaris Assist

When Polaris Assist is configured and enabled, an "AI Insight" section will be available for findings which have a Static Analysis detection method and have the required information for at least one of the available assessments listed below. (For information on configuration, see Polaris Assist.)
Note: Users must have the permission Request and view finding assessments from Polaris Assist (Beta) for the project, which is included in the default Reader role provided by SRM.

Warning: Polaris Assist generates results created by artificial intelligence (AI) or other automated technologies. Such results are provided for informational purposes only and should not be relied upon for any specific purpose without verification of its accuracy or completeness.

Click the AI Assist button to expand the fields.



When possible, SRM will offer up to three sub-assessments:
  • Summary. Polaris Assist will provide a brief summary of the vulnerability and its impact. Requires finding description and CWE.
  • Code Analysis. Polaris Assist will summarize an excerpt of the affected code and surrounding lines and a description of the vulnerability in the context of the affected code.
    • Code summary requires a file location with source code.
    • Vulnerability analysis requires a file location with source code, finding description, and CWE.
  • Fix Suggestion. Polaris Assist will suggest an updated code snippet that attempts to address the vulnerability.
    • Requires a file location with source code, finding description, and CWE.