Operations
Settings reference
Every policy setting in one place, with its default.
| Policy tab setting | Default | Topic |
|---|---|---|
| Mode | whitelist | Whitelist, blacklist and audit mode |
| Audit only (learning mode) | off | Whitelist, blacklist and audit mode |
| Quarantine | permissive | Quarantine and integrity alerts |
| Safe version resolution / Leave out advisories from | off / HIGH | Vulnerabilities |
| Cooling off, in hours / Never cooled off / A version with no publish time | 0 / empty / allow | Cooling off |
| When provenance is INVALID | warn | Licenses, lookalikes and provenance |
| Longest waiver, in days | 90 | Deciding waivers |
| Typosquat checks / Also protect / Never flag | warn / empty / empty | Licenses, lookalikes and provenance |
| Open a request when an install is blocked | on | Deciding requests |
| Approving a request can approve its clean dependencies too | off | Deciding requests |
| Enforce lifecycle stages | off | Applications and environments |
| Tell blocked developers where the portal is | on | Adds "Ask for it at https://packages.example.com/_admin" to refusals. |
Note
Save settings saves every tab at once. Registry rows, reserved names, applications and branding save on their own as soon as you change them.