Need to secure our Service-Now sand-box environment
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 hours ago
Hello all,
In my service-now Instance, I see this below record created today under "Incompatible guarded Scripts" module.
I understand it's a security threat. But can someone please explain me what this is and how to work on this and prevent in future?
Thanks a lot.
Regards,
Lucky
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2 hours ago
Hi @Lucky1
Check who has created the record.
In your sandbox, have everyone access to create component with Admin access.
Is sandbox comes under technical governance lenses, if not bring it means , before giving the access validate expected Persona can create the component there.
Also check: https://www.servicenow.com/docs/r/api-reference/scripts/guarded-script-allowed-apis.html
Regards
Tanushree Maiti
ServiceNow Technical Architect
LinkedIn: https://www.linkedin.com/in/tanushreemaiti
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
26m ago
Hello Tanushree,
Thanks for your response.
If you see the Page Title in my Screenshot, it is a record in UI pages.
When I opened the page, it' doesn't have a single ACL. So, is this the reason that guests are trying to access it or what?
I see the record in Prod is created by "guest".
Regards,
Lucky