export declare const AliasContextKind: { /** * Unknown. */ readonly KindUnspecified: "KIND_UNSPECIFIED"; /** * Git tag. */ readonly Fixed: "FIXED"; /** * Git branch. */ readonly Movable: "MOVABLE"; /** * Used to specify non-standard aliases. For example, if a Git repo has a ref named "refs/foo/bar". */ readonly Other: "OTHER"; }; /** * The alias kind. */ export type AliasContextKind = (typeof AliasContextKind)[keyof typeof AliasContextKind]; export declare const AssessmentState: { /** * No state is specified. */ readonly StateUnspecified: "STATE_UNSPECIFIED"; /** * This product is known to be affected by this vulnerability. */ readonly Affected: "AFFECTED"; /** * This product is known to be not affected by this vulnerability. */ readonly NotAffected: "NOT_AFFECTED"; /** * This product contains a fix for this vulnerability. */ readonly Fixed: "FIXED"; /** * It is not known yet whether these versions are or are not affected by the vulnerability. However, it is still under investigation. */ readonly UnderInvestigation: "UNDER_INVESTIGATION"; }; /** * Provides the state of this Vulnerability assessment. */ export type AssessmentState = (typeof AssessmentState)[keyof typeof AssessmentState]; export declare const CVSSAttackComplexity: { readonly AttackComplexityUnspecified: "ATTACK_COMPLEXITY_UNSPECIFIED"; readonly AttackComplexityLow: "ATTACK_COMPLEXITY_LOW"; readonly AttackComplexityHigh: "ATTACK_COMPLEXITY_HIGH"; readonly AttackComplexityMedium: "ATTACK_COMPLEXITY_MEDIUM"; }; export type CVSSAttackComplexity = (typeof CVSSAttackComplexity)[keyof typeof CVSSAttackComplexity]; export declare const CVSSAttackVector: { readonly AttackVectorUnspecified: "ATTACK_VECTOR_UNSPECIFIED"; readonly AttackVectorNetwork: "ATTACK_VECTOR_NETWORK"; readonly AttackVectorAdjacent: "ATTACK_VECTOR_ADJACENT"; readonly AttackVectorLocal: "ATTACK_VECTOR_LOCAL"; readonly AttackVectorPhysical: "ATTACK_VECTOR_PHYSICAL"; }; /** * Base Metrics Represents the intrinsic characteristics of a vulnerability that are constant over time and across user environments. */ export type CVSSAttackVector = (typeof CVSSAttackVector)[keyof typeof CVSSAttackVector]; export declare const CVSSAuthentication: { readonly AuthenticationUnspecified: "AUTHENTICATION_UNSPECIFIED"; readonly AuthenticationMultiple: "AUTHENTICATION_MULTIPLE"; readonly AuthenticationSingle: "AUTHENTICATION_SINGLE"; readonly AuthenticationNone: "AUTHENTICATION_NONE"; }; export type CVSSAuthentication = (typeof CVSSAuthentication)[keyof typeof CVSSAuthentication]; export declare const CVSSAvailabilityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; readonly ImpactPartial: "IMPACT_PARTIAL"; readonly ImpactComplete: "IMPACT_COMPLETE"; }; export type CVSSAvailabilityImpact = (typeof CVSSAvailabilityImpact)[keyof typeof CVSSAvailabilityImpact]; export declare const CVSSConfidentialityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; readonly ImpactPartial: "IMPACT_PARTIAL"; readonly ImpactComplete: "IMPACT_COMPLETE"; }; export type CVSSConfidentialityImpact = (typeof CVSSConfidentialityImpact)[keyof typeof CVSSConfidentialityImpact]; export declare const CVSSIntegrityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; readonly ImpactPartial: "IMPACT_PARTIAL"; readonly ImpactComplete: "IMPACT_COMPLETE"; }; export type CVSSIntegrityImpact = (typeof CVSSIntegrityImpact)[keyof typeof CVSSIntegrityImpact]; export declare const CVSSPrivilegesRequired: { readonly PrivilegesRequiredUnspecified: "PRIVILEGES_REQUIRED_UNSPECIFIED"; readonly PrivilegesRequiredNone: "PRIVILEGES_REQUIRED_NONE"; readonly PrivilegesRequiredLow: "PRIVILEGES_REQUIRED_LOW"; readonly PrivilegesRequiredHigh: "PRIVILEGES_REQUIRED_HIGH"; }; export type CVSSPrivilegesRequired = (typeof CVSSPrivilegesRequired)[keyof typeof CVSSPrivilegesRequired]; export declare const CVSSScope: { readonly ScopeUnspecified: "SCOPE_UNSPECIFIED"; readonly ScopeUnchanged: "SCOPE_UNCHANGED"; readonly ScopeChanged: "SCOPE_CHANGED"; }; export type CVSSScope = (typeof CVSSScope)[keyof typeof CVSSScope]; export declare const CVSSUserInteraction: { readonly UserInteractionUnspecified: "USER_INTERACTION_UNSPECIFIED"; readonly UserInteractionNone: "USER_INTERACTION_NONE"; readonly UserInteractionRequired: "USER_INTERACTION_REQUIRED"; }; export type CVSSUserInteraction = (typeof CVSSUserInteraction)[keyof typeof CVSSUserInteraction]; export declare const CVSSv3AttackComplexity: { readonly AttackComplexityUnspecified: "ATTACK_COMPLEXITY_UNSPECIFIED"; readonly AttackComplexityLow: "ATTACK_COMPLEXITY_LOW"; readonly AttackComplexityHigh: "ATTACK_COMPLEXITY_HIGH"; }; export type CVSSv3AttackComplexity = (typeof CVSSv3AttackComplexity)[keyof typeof CVSSv3AttackComplexity]; export declare const CVSSv3AttackVector: { readonly AttackVectorUnspecified: "ATTACK_VECTOR_UNSPECIFIED"; readonly AttackVectorNetwork: "ATTACK_VECTOR_NETWORK"; readonly AttackVectorAdjacent: "ATTACK_VECTOR_ADJACENT"; readonly AttackVectorLocal: "ATTACK_VECTOR_LOCAL"; readonly AttackVectorPhysical: "ATTACK_VECTOR_PHYSICAL"; }; /** * Base Metrics Represents the intrinsic characteristics of a vulnerability that are constant over time and across user environments. */ export type CVSSv3AttackVector = (typeof CVSSv3AttackVector)[keyof typeof CVSSv3AttackVector]; export declare const CVSSv3AvailabilityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; }; export type CVSSv3AvailabilityImpact = (typeof CVSSv3AvailabilityImpact)[keyof typeof CVSSv3AvailabilityImpact]; export declare const CVSSv3ConfidentialityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; }; export type CVSSv3ConfidentialityImpact = (typeof CVSSv3ConfidentialityImpact)[keyof typeof CVSSv3ConfidentialityImpact]; export declare const CVSSv3IntegrityImpact: { readonly ImpactUnspecified: "IMPACT_UNSPECIFIED"; readonly ImpactHigh: "IMPACT_HIGH"; readonly ImpactLow: "IMPACT_LOW"; readonly ImpactNone: "IMPACT_NONE"; }; export type CVSSv3IntegrityImpact = (typeof CVSSv3IntegrityImpact)[keyof typeof CVSSv3IntegrityImpact]; export declare const CVSSv3PrivilegesRequired: { readonly PrivilegesRequiredUnspecified: "PRIVILEGES_REQUIRED_UNSPECIFIED"; readonly PrivilegesRequiredNone: "PRIVILEGES_REQUIRED_NONE"; readonly PrivilegesRequiredLow: "PRIVILEGES_REQUIRED_LOW"; readonly PrivilegesRequiredHigh: "PRIVILEGES_REQUIRED_HIGH"; }; export type CVSSv3PrivilegesRequired = (typeof CVSSv3PrivilegesRequired)[keyof typeof CVSSv3PrivilegesRequired]; export declare const CVSSv3Scope: { readonly ScopeUnspecified: "SCOPE_UNSPECIFIED"; readonly ScopeUnchanged: "SCOPE_UNCHANGED"; readonly ScopeChanged: "SCOPE_CHANGED"; }; export type CVSSv3Scope = (typeof CVSSv3Scope)[keyof typeof CVSSv3Scope]; export declare const CVSSv3UserInteraction: { readonly UserInteractionUnspecified: "USER_INTERACTION_UNSPECIFIED"; readonly UserInteractionNone: "USER_INTERACTION_NONE"; readonly UserInteractionRequired: "USER_INTERACTION_REQUIRED"; }; export type CVSSv3UserInteraction = (typeof CVSSv3UserInteraction)[keyof typeof CVSSv3UserInteraction]; export declare const CisBenchmarkSeverity: { /** * Unknown. */ readonly SeverityUnspecified: "SEVERITY_UNSPECIFIED"; /** * Minimal severity. */ readonly Minimal: "MINIMAL"; /** * Low severity. */ readonly Low: "LOW"; /** * Medium severity. */ readonly Medium: "MEDIUM"; /** * High severity. */ readonly High: "HIGH"; /** * Critical severity. */ readonly Critical: "CRITICAL"; }; export type CisBenchmarkSeverity = (typeof CisBenchmarkSeverity)[keyof typeof CisBenchmarkSeverity]; export declare const DeploymentOccurrencePlatform: { /** * Unknown. */ readonly PlatformUnspecified: "PLATFORM_UNSPECIFIED"; /** * Google Container Engine. */ readonly Gke: "GKE"; /** * Google App Engine: Flexible Environment. */ readonly Flex: "FLEX"; /** * Custom user-defined platform. */ readonly Custom: "CUSTOM"; }; /** * Platform hosting this deployment. */ export type DeploymentOccurrencePlatform = (typeof DeploymentOccurrencePlatform)[keyof typeof DeploymentOccurrencePlatform]; export declare const DiscoveryNoteAnalysisKind: { /** * Default value. This value is unused. */ readonly NoteKindUnspecified: "NOTE_KIND_UNSPECIFIED"; /** * The note and occurrence represent a package vulnerability. */ readonly Vulnerability: "VULNERABILITY"; /** * The note and occurrence assert build provenance. */ readonly Build: "BUILD"; /** * This represents an image basis relationship. */ readonly Image: "IMAGE"; /** * This represents a package installed via a package manager. */ readonly Package: "PACKAGE"; /** * The note and occurrence track deployment events. */ readonly Deployment: "DEPLOYMENT"; /** * The note and occurrence track the initial discovery status of a resource. */ readonly Discovery: "DISCOVERY"; /** * This represents a logical "role" that can attest to artifacts. */ readonly Attestation: "ATTESTATION"; /** * This represents an available package upgrade. */ readonly Upgrade: "UPGRADE"; /** * This represents a Compliance Note */ readonly Compliance: "COMPLIANCE"; /** * This represents a DSSE attestation Note */ readonly DsseAttestation: "DSSE_ATTESTATION"; /** * This represents a Vulnerability Assessment. */ readonly VulnerabilityAssessment: "VULNERABILITY_ASSESSMENT"; /** * This represents an SBOM Reference. */ readonly SbomReference: "SBOM_REFERENCE"; }; /** * Required. Immutable. The kind of analysis that is handled by this discovery. */ export type DiscoveryNoteAnalysisKind = (typeof DiscoveryNoteAnalysisKind)[keyof typeof DiscoveryNoteAnalysisKind]; export declare const DiscoveryOccurrenceAnalysisStatus: { /** * Unknown. */ readonly AnalysisStatusUnspecified: "ANALYSIS_STATUS_UNSPECIFIED"; /** * Resource is known but no action has been taken yet. */ readonly Pending: "PENDING"; /** * Resource is being analyzed. */ readonly Scanning: "SCANNING"; /** * Analysis has finished successfully. */ readonly FinishedSuccess: "FINISHED_SUCCESS"; /** * Analysis has completed. */ readonly Complete: "COMPLETE"; /** * Analysis has finished unsuccessfully, the analysis itself is in a bad state. */ readonly FinishedFailed: "FINISHED_FAILED"; /** * The resource is known not to be supported. */ readonly FinishedUnsupported: "FINISHED_UNSUPPORTED"; }; /** * The status of discovery for the resource. */ export type DiscoveryOccurrenceAnalysisStatus = (typeof DiscoveryOccurrenceAnalysisStatus)[keyof typeof DiscoveryOccurrenceAnalysisStatus]; export declare const DiscoveryOccurrenceContinuousAnalysis: { /** * Unknown. */ readonly ContinuousAnalysisUnspecified: "CONTINUOUS_ANALYSIS_UNSPECIFIED"; /** * The resource is continuously analyzed. */ readonly Active: "ACTIVE"; /** * The resource is ignored for continuous analysis. */ readonly Inactive: "INACTIVE"; }; /** * Whether the resource is continuously analyzed. */ export type DiscoveryOccurrenceContinuousAnalysis = (typeof DiscoveryOccurrenceContinuousAnalysis)[keyof typeof DiscoveryOccurrenceContinuousAnalysis]; export declare const DistributionArchitecture: { /** * Unknown architecture. */ readonly ArchitectureUnspecified: "ARCHITECTURE_UNSPECIFIED"; /** * X86 architecture. */ readonly X86: "X86"; /** * X64 architecture. */ readonly X64: "X64"; }; /** * The CPU architecture for which packages in this distribution channel were built. */ export type DistributionArchitecture = (typeof DistributionArchitecture)[keyof typeof DistributionArchitecture]; export declare const JustificationJustificationType: { /** * JUSTIFICATION_TYPE_UNSPECIFIED. */ readonly JustificationTypeUnspecified: "JUSTIFICATION_TYPE_UNSPECIFIED"; /** * The vulnerable component is not present in the product. */ readonly ComponentNotPresent: "COMPONENT_NOT_PRESENT"; /** * The vulnerable code is not present. Typically this case occurs when source code is configured or built in a way that excludes the vulnerable code. */ readonly VulnerableCodeNotPresent: "VULNERABLE_CODE_NOT_PRESENT"; /** * The vulnerable code can not be executed. Typically this case occurs when the product includes the vulnerable code but does not call or use the vulnerable code. */ readonly VulnerableCodeNotInExecutePath: "VULNERABLE_CODE_NOT_IN_EXECUTE_PATH"; /** * The vulnerable code cannot be controlled by an attacker to exploit the vulnerability. */ readonly VulnerableCodeCannotBeControlledByAdversary: "VULNERABLE_CODE_CANNOT_BE_CONTROLLED_BY_ADVERSARY"; /** * The product includes built-in protections or features that prevent exploitation of the vulnerability. These built-in protections cannot be subverted by the attacker and cannot be configured or disabled by the user. These mitigations completely prevent exploitation based on known attack vectors. */ readonly InlineMitigationsAlreadyExist: "INLINE_MITIGATIONS_ALREADY_EXIST"; }; /** * The justification type for this vulnerability. */ export type JustificationJustificationType = (typeof JustificationJustificationType)[keyof typeof JustificationJustificationType]; export declare const PackageNoteArchitecture: { /** * Unknown architecture. */ readonly ArchitectureUnspecified: "ARCHITECTURE_UNSPECIFIED"; /** * X86 architecture. */ readonly X86: "X86"; /** * X64 architecture. */ readonly X64: "X64"; }; /** * The CPU architecture for which packages in this distribution channel were built. Architecture will be blank for language packages. */ export type PackageNoteArchitecture = (typeof PackageNoteArchitecture)[keyof typeof PackageNoteArchitecture]; export declare const RemediationRemediationType: { /** * No remediation type specified. */ readonly RemediationTypeUnspecified: "REMEDIATION_TYPE_UNSPECIFIED"; /** * A MITIGATION is available. */ readonly Mitigation: "MITIGATION"; /** * No fix is planned. */ readonly NoFixPlanned: "NO_FIX_PLANNED"; /** * Not available. */ readonly NoneAvailable: "NONE_AVAILABLE"; /** * A vendor fix is available. */ readonly VendorFix: "VENDOR_FIX"; /** * A workaround is available. */ readonly Workaround: "WORKAROUND"; }; /** * The type of remediation that can be applied. */ export type RemediationRemediationType = (typeof RemediationRemediationType)[keyof typeof RemediationRemediationType]; export declare const SBOMStatusSbomState: { /** * Default unknown state. */ readonly SbomStateUnspecified: "SBOM_STATE_UNSPECIFIED"; /** * SBOM scanning is pending. */ readonly Pending: "PENDING"; /** * SBOM scanning has completed. */ readonly Complete: "COMPLETE"; }; /** * The progress of the SBOM generation. */ export type SBOMStatusSbomState = (typeof SBOMStatusSbomState)[keyof typeof SBOMStatusSbomState]; export declare const VersionKind: { /** * Unknown. */ readonly VersionKindUnspecified: "VERSION_KIND_UNSPECIFIED"; /** * A standard package version. */ readonly Normal: "NORMAL"; /** * A special version representing negative infinity. */ readonly Minimum: "MINIMUM"; /** * A special version representing positive infinity. */ readonly Maximum: "MAXIMUM"; }; /** * Required. Distinguishes between sentinel MIN/MAX versions and normal versions. */ export type VersionKind = (typeof VersionKind)[keyof typeof VersionKind]; export declare const VexAssessmentState: { /** * No state is specified. */ readonly StateUnspecified: "STATE_UNSPECIFIED"; /** * This product is known to be affected by this vulnerability. */ readonly Affected: "AFFECTED"; /** * This product is known to be not affected by this vulnerability. */ readonly NotAffected: "NOT_AFFECTED"; /** * This product contains a fix for this vulnerability. */ readonly Fixed: "FIXED"; /** * It is not known yet whether these versions are or are not affected by the vulnerability. However, it is still under investigation. */ readonly UnderInvestigation: "UNDER_INVESTIGATION"; }; /** * Provides the state of this Vulnerability assessment. */ export type VexAssessmentState = (typeof VexAssessmentState)[keyof typeof VexAssessmentState]; export declare const VulnerabilityNoteCvssVersion: { readonly CvssVersionUnspecified: "CVSS_VERSION_UNSPECIFIED"; readonly CvssVersion2: "CVSS_VERSION_2"; readonly CvssVersion3: "CVSS_VERSION_3"; }; /** * CVSS version used to populate cvss_score and severity. */ export type VulnerabilityNoteCvssVersion = (typeof VulnerabilityNoteCvssVersion)[keyof typeof VulnerabilityNoteCvssVersion]; export declare const VulnerabilityNoteSeverity: { /** * Unknown. */ readonly SeverityUnspecified: "SEVERITY_UNSPECIFIED"; /** * Minimal severity. */ readonly Minimal: "MINIMAL"; /** * Low severity. */ readonly Low: "LOW"; /** * Medium severity. */ readonly Medium: "MEDIUM"; /** * High severity. */ readonly High: "HIGH"; /** * Critical severity. */ readonly Critical: "CRITICAL"; }; /** * The note provider assigned severity of this vulnerability. */ export type VulnerabilityNoteSeverity = (typeof VulnerabilityNoteSeverity)[keyof typeof VulnerabilityNoteSeverity]; export declare const VulnerabilityOccurrenceEffectiveSeverity: { /** * Unknown. */ readonly SeverityUnspecified: "SEVERITY_UNSPECIFIED"; /** * Minimal severity. */ readonly Minimal: "MINIMAL"; /** * Low severity. */ readonly Low: "LOW"; /** * Medium severity. */ readonly Medium: "MEDIUM"; /** * High severity. */ readonly High: "HIGH"; /** * Critical severity. */ readonly Critical: "CRITICAL"; }; /** * The distro assigned severity for this vulnerability when it is available, otherwise this is the note provider assigned severity. When there are multiple PackageIssues for this vulnerability, they can have different effective severities because some might be provided by the distro while others are provided by the language ecosystem for a language pack. For this reason, it is advised to use the effective severity on the PackageIssue level. In the case where multiple PackageIssues have differing effective severities, this field should be the highest severity for any of the PackageIssues. */ export type VulnerabilityOccurrenceEffectiveSeverity = (typeof VulnerabilityOccurrenceEffectiveSeverity)[keyof typeof VulnerabilityOccurrenceEffectiveSeverity];