Vulnerability Risk-Acceptance Engine
Python · GitHub Actions · CrowdStrike Spotlight · Vanta · CISA KEV
Pulls findings from two scanners over OAuth, deduplicates across both, and scores each CVE against a CVSS-vector rubric before writing a risk-acceptance justification that names the specific compensating control. Cleared 1,611 vulnerabilities ahead of an ISO 27001 audit and separated out 370 that needed patching instead.