Track status and assignment
Status tells you where the work stands. Assignment tells you who or which agent is responsible.
A vulnerability does not have to pass through every status. For example, your team may accept the risk, or verification may return an unresolved vulnerability to Open.
Use hooks to start work
A hook responds when a vulnerability’s status or assignment changes. It can launch an agent, notify your team, or start another workflow. Antigen comes with hooks configured for triage, remediation, and verification. These connect the work automatically while your team reviews proposed changes and handles tasks that need human input.How the default setup works
- A new vulnerability starts triage. When a vulnerability enters Open, a hook launches Antigen’s pre-built triage-agent. It investigates the issue and determines whether it has enough information and access for remediation to proceed.
- Assignment starts remediation. If triage can proceed, it moves the vulnerability to In progress and assigns it to Antigen’s pre-built remediation-agent. That assignment triggers a run to prepare remediation steps, such as a GitHub pull request or a proposed cloud configuration change. If triage needs help, it asks your team.
- Your team reviews and deploys the changes. Your team completes the proposed work through its usual tools. Once the fix is deployed, the vulnerability moves to Remediated.
- Verification tests the fix. Moving to Remediated triggers tCell to test the original exploit again. If it no longer succeeds, the vulnerability moves to Verified. If it still succeeds, the vulnerability returns to Open with new evidence, starting triage again.