Manage projects

Create a project, add components to it, and analyze impact for the whole system.

A project groups components you pick into one system, so impact analysis can answer whether that system is affected. See Projects for how projects differ from applications.

Create a project

Open Projects

Go to Projects in the main menu and select Add Project.

Name the project

Name it after the system it represents, for example "Customer Portal".

Add components

On the project's page, select Add Component (or press ⌘K / Ctrl+K), search for the component by name, and select it. Repeat for each component. The names are the ones listed on the Applications and Components pages.

Analyze impact for a project

Open the project and select its Vulnerabilities tab. It lists every vulnerability in the project's components and their dependencies. Select Analyze on a row to open that vulnerability's Impact and Graph tabs. They show every project, application, and container that includes the vulnerable component, this project among them, and the path from each one to it.

Keep the project on the latest versions

When a new SBOM is uploaded for a component already in the project, the project switches to the new version. To pin a component to the version it has, turn off Auto Update for it on the project's Components tab.

Next steps