Skip to content

Improve the CLI scan experience #1798

@tas50

Description

@tas50

This issue is a rollup of multiple issues I've encountered while scanning assets from the CLI:

  • Data query output takes up a large amount of space and provides little value in its truncated form. This should be disabled by default in V12
  • Compliance controls passing section lacks framework context and should be disabled by default in V12
  • "Failing:" section should probably be "Failing checks:" since we don't have combined findings at this point
Failing:
! Error:          Ensure security auditing retention
✕ MEDIUM (60):    Reduce the sudo timeout period
  • Vulnerabilities section header is blue but other sections are console default
Image
  • Failing checks lack a scale. This should be ✕ MEDIUM (60/100):
Image
  • Skipped checks shouldn't show up in the Failing section
Image
  • Risk not used in the Vulnerabilities section / it's unclear score is CVSS and not risk score.
Image
  • We expose an overall CVSS score, which is not a thing we do on the console
Image
  • If only a single asset is scanned the summary format is not a great use of space
Image
  • Our console link call to action is See more scan results and asset relationships on the Mondoo Console which should probably be updated to stress digging in deeper and remediations instead of relationships.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions