SecurityCustomize SecurityExceptions for Findings

Set Exceptions on Policies

Add, approve, reject, and remove exceptions for checks across a whole space.

A policy exception tells Mondoo to skip or stop scoring one or more checks within a policy, space-wide. Use it when a check doesn't apply to your environment, or when you want to accept the risk for a tracked period.

For an overview of the four exception types, read Exceptions.

Note: Setting, approving, and removing exceptions all require Editor or Owner access.

Set an exception on policy checks

  1. In the Mondoo App, navigate to the space.

    Space in the Mondoo App

  2. In the side navigation, under Findings, select Policies.

    Security policies in the Mondoo App

  3. Select the policy and switch to the Checks tab.

  4. Check the boxes next to the checks you want to set an exception on.

    Mondoo security - set an exception

  5. Select SET EXCEPTION, choose the type, fill in the details, and select SAVE EXCEPTION.

Approve or reject an exception

An exception's approval flow depends on your space's exception settings. By default, an exception takes effect when it's created and a different team member approves or rejects it as an audit step. Approving keeps the exception. Rejecting removes it.

  1. Navigate to the space, then to Findings > Policies.

  2. Select the policy and switch to the Exceptions tab.

    Security policies in the Mondoo App

  3. Select Approve to keep the exception or Reject to remove it.

Remove an exception

  1. Navigate to the space, then to Findings > Policies.

  2. Select the policy and switch to the Checks tab. Checks with exceptions are flagged in the list.

  3. Check the boxes next to the checks you want to re-enable.

    Mondoo security - select checks

  4. Select Remove Exception and Enable.

On this page