For the complete documentation index, see llms.txt. This page is also available as Markdown.

Create Remediation Note

Description

Adds a remediation note to an existing AttackForge vulnerability. A remediation note is a timestamped, authored comment recording remediation progress, guidance, or discussion for a single vulnerability. This is a write operation: it persists a new remediation note against the vulnerability.

The shape of args is declared inline (see Building args for Write Tools), so no preparatory call is needed. note is a rich-text field and must use the AttackForge richtext format described in the richtext_format block returned by get_args_schema_for_tool.

Preconditions: the caller must have access to at least one project the vulnerability is linked to. On success the new remediation note id is returned.

How To Enable

  1. Go to Users

  2. Select the user you would like to provide access to this tool

  3. Click on Access > MCP

  4. Click on Add Tools

  5. Select the tool create_remediation_note and click Add

Example Prompts

  • Add a remediation note to vulnerability X saying the vendor patch has been applied.

  • Record on this finding that the risk has been accepted by the business owner.

  • Note on vulnerability X that remediation is blocked pending a change window.

Parameters

Parameter
Type
Required
Description

args

object

Yes

The remediation-note-creation payload - see the keys below.

args keys:

Key
Type
Required
Description

vulnerability_id

string

Yes

Id (24-hex) of the vulnerability the note is being added to. Source: find_vulnerabilities.

note

string

Yes

The note content. Rich-text - use the AttackForge richtext format.

Example Response

Last updated