---
title: <POST> Supply chain update policy
slug: lesspostgreater-supply-chain-update-policy
docTags: 
createdAt: 2025-03-20T05:28:19.025Z
---

The **Supply Chain Update Policy API&#x20;**&#x20;allows users to **update security policies&#x20;**&#x72;elated to repository scans. This enables customization of **scan format suppression, file format suppression, vulnerability types, and tool strictness levels&#x20;**, **GenAI framework detection**, **report generation**, etc.  ensuring compliance with security requirements.&#x20;



:::ApiMethodV2
```json
{
  "name": "update_policy",
  "method": "POST",
  "url": "https://api.aws.boschaishield.com/prod/api/ais/v1.5/developer/update_policy",
  "description": "This API requires a JSON request body containing the policy updates.",
  "tab": "examples",
  "examples": {
    "languages": [
      {
        "id": "frgapb2aD4_u5WQrU_rAS",
        "language": "python",
        "code": "import requests\n\nurl = \"https://api.aws.boschaishield.com/prod/api/ais/v1.5/generate_model_id\"\n\npayload = {}\nheaders = {\n   'x-api-key': 'string',\n   'Org-Id': 'string'\n}\n\nresponse = requests.request(\"POST\", url, headers=headers, data=payload)\n\nprint(response.text)\n",
        "customLabel": ""
      },
      {
        "id": "HWvu0IcWyYs9t1z8WWABJ",
        "language": "curl",
        "code": "curl --location --request POST 'https://api.aws.boschaishield.com/prod/api/ais/v1.5/generate_model_id' \\\n--header 'x-api-key: string' \\\n--header 'Org-Id: string'",
        "customLabel": ""
      },
      {
        "id": "cgJ5_5dDTBZwDAuJTn5A9",
        "language": "nodejs",
        "code": "var request = require('request');\nvar options = {\n   'method': 'POST',\n   'url': 'https://api.aws.boschaishield.com/prod/api/ais/v1.5/generate_model_id',\n   'headers': {\n      'x-api-key': 'string',\n      'Org-Id': 'string'\n   }\n};\nrequest(options, function (error, response) {\n   if (error) throw new Error(error);\n   console.log(response.body);\n});\n",
        "customLabel": ""
      },
      {
        "id": "Zp0KHmgw1W3fWtEQB2FGN",
        "language": "javascript",
        "code": "var myHeaders = new Headers();\nmyHeaders.append(\"x-api-key\", \"string\");\nmyHeaders.append(\"Org-Id\", \"string\");\n\nvar requestOptions = {\n   method: 'POST',\n   headers: myHeaders,\n   redirect: 'follow'\n};\n\nfetch(\"https://api.aws.boschaishield.com/prod/api/ais/v1.5/generate_model_id\", requestOptions)\n   .then(response => response.text())\n   .then(result => console.log(result))\n   .catch(error => console.log('error', error));",
        "customLabel": ""
      },
      {
        "id": "Vj8db-_tfEQaZwm4gTamg",
        "language": "ruby",
        "code": "require \"uri\"\nrequire \"net/http\"\n\nurl = URI(\"https://api.aws.boschaishield.com/prod/api/ais/v1.5/generate_model_id\")\n\nhttps = Net::HTTP.new(url.host, url.port)\nhttps.use_ssl = true\n\nrequest = Net::HTTP::Post.new(url)\nrequest[\"x-api-key\"] = \"string\"\nrequest[\"Org-Id\"] = \"string\"\n\nresponse = https.request(request)\nputs response.read_body\n",
        "customLabel": ""
      }
    ],
    "selectedLanguageId": "frgapb2aD4_u5WQrU_rAS"
  },
  "results": {
    "languages": [
      {
        "id": "N1fpC35SZxbcEWxck2pSW",
        "language": "200",
        "customLabel": "",
        "code": "//200: policy updated successfully"
      },
      {
        "id": "HoRypJvdzSbrZlIR1DsHs",
        "language": "401",
        "code": "// 401 Unauthorized: Returns an error message if the provided API key or Org-ID is invalid or expired.",
        "customLabel": ""
      },
      {
        "id": "iDVOSM2kLZnuhseONktcg",
        "language": "400",
        "customLabel": "",
        "code": "// 400 Bad request Error: Returns an error message if the application cannot or will not process the request due to something that is perceived to be a client error (for example, malformed request syntax, invalid request message framing, etc.)"
      },
      {
        "id": "FxGZoAFylQRraTE0xU1u7",
        "language": "412",
        "code": "// 412 precondition failed: Returns an error message if access to the target resource has been denied. (For example- if any of the parameter value is incorrect or license has expired)",
        "customLabel": ""
      }
    ],
    "selectedLanguageId": "N1fpC35SZxbcEWxck2pSW"
  },
  "request": {
    "pathParameters": [],
    "queryParameters": [],
    "headerParameters": [
      {
        "name": "x-api-key",
        "kind": "required",
        "type": "string",
        "description": "Enter your API key",
        "": "required"
      },
      {
        "name": "Org-Id",
        "kind": "required",
        "type": "string",
        "description": "Enter your organization id",
        "": "Enter your organization id"
      }
    ],
    "bodyDataParameters": [
      {
        "name": "file_format_suppression",
        "kind": "required",
        "type": "object",
        "description": "The file_format_suppression policy allows users to suppress scanning for specific file extensions. If suppressed is set to True, the specified file types will skipped during the supply chain security analysis.",
        "": "required",
        "children": [
          {
            "name": ".bin",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".ckpt",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".gguf",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".h5",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".keras",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".onnx",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pb",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pkl",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pt",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pth",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".safetensors",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".zip",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          }
        ],
        "schema": [
          {
            "name": ".bin",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".ckpt",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".gguf",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".h5",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".keras",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".onnx",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pb",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pkl",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pt",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".pth",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".safetensors",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          },
          {
            "name": ".zip",
            "kind": "required",
            "type": "object",
            "description": "file extension of the file",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active, and the file will be skipped during scanning. If set to False, the policy is inactive, and the file will be considered for analysis."
              }
            ]
          }
        ]
      },
      {
        "name": "genai_framework_detection",
        "kind": "required",
        "type": "object",
        "description": "Enables automatic identification of Generative AI-related libraries (e.g., transformers, openai, langchain) during source or dependency scanning.",
        "": "required",
        "children": [
          {
            "name": "enabled",
            "kind": "required",
            "type": "boolean",
            "description": "If enabledis set to True, the policy is active, and the GenAI framework will be detected during scanning. If set to False, it will not be detected as GenAI framework."
          }
        ],
        "schema": [
          {
            "name": "enabled",
            "kind": "required",
            "type": "boolean",
            "description": "If enabledis set to True, the policy is active, and the GenAI framework will be detected during scanning. If set to False, it will not be detected as GenAI framework."
          }
        ]
      },
      {
        "name": "report_generation",
        "kind": "required",
        "type": "object",
        "description": "Controls whether a report is generated during the scan process.",
        "": "required",
        "children": [
          {
            "name": "pdf",
            "kind": "required",
            "type": "boolean",
            "description": "If pdf=True, a PDF report will be generated after the scan; if pdf=False, no PDF report will be created."
          }
        ],
        "schema": [
          {
            "name": "pdf",
            "kind": "required",
            "type": "boolean",
            "description": "If pdf=True, a PDF report will be generated after the scan; if pdf=False, no PDF report will be created."
          }
        ]
      },
      {
        "name": "scan_format_suppression",
        "kind": "required",
        "type": "object",
        "description": "Allows selective suppression of specific scan formats like SAST (Static Application Security Testing) or SBOM/SCA (Software Bill of Materials/Software Composition Analysis).",
        "": "Allows selective suppression of specific scan formats like SAST (Static Application Security Testing) or SBOM/SCA (Software Bill of Materials/Software Composition Analysis).",
        "children": [
          {
            "name": "SAST",
            "kind": "required",
            "type": "object",
            "description": "Static Application Security Testing",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active. If set to False, the policy is inactive."
              }
            ]
          },
          {
            "name": "SBOM/SCA",
            "kind": "required",
            "type": "object",
            "description": "Software Bill of Materials/Software Composition Analysis",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active. If set to False, the policy is inactive."
              }
            ]
          }
        ],
        "schema": [
          {
            "name": "SAST",
            "kind": "required",
            "type": "object",
            "description": "Static Application Security Testing",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active. If set to False, the policy is inactive."
              }
            ]
          },
          {
            "name": "SBOM/SCA",
            "kind": "required",
            "type": "object",
            "description": "Software Bill of Materials/Software Composition Analysis",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "If suppressed is set to True, the policy is active. If set to False, the policy is inactive."
              }
            ]
          }
        ]
      },
      {
        "name": "vulnerability_type",
        "kind": "required",
        "type": "object",
        "description": "This section defines a configurable list of AI/ML model-related vulnerabilities, where each vulnerability can be suppressed or actively scanned based on the configuration.",
        "": "required",
        "children": [
          {
            "name": "AIS-BM-S-01",
            "kind": "required",
            "type": "object",
            "description": "The AI-BOM indicates presence of packages with CVEs or other reported vulnerabilities.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-CP-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of checkpoint files, which could lead to unintended code execution or model manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-GU-R-01",
            "kind": "required",
            "type": "object",
            "description": "A runtime threat in GGUF files caused by malicious or improperly formatted data.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-GU-R-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the GGUF format with invalid or unreadable template. This is an indication of a potential file tampering.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-B-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the keras model files indicating presence of potential backdoor / unsafe operations.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-B-02",
            "kind": "required",
            "type": "object",
            "description": "Non-standard Keras Layers are found in the Model - Potential backdoor.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in deserializing Keras model files, which might expose systems to malicious code.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-MI-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in zip files that can introduce trojans or corrupted data into the system.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ON-B-01",
            "kind": "required",
            "type": "object",
            "description": "A backdoor vulnerability within ONNX model files, potentially allowing hidden operations to be triggered.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ON-R-01",
            "kind": "required",
            "type": "object",
            "description": "A runtime vulnerability caused by corrupted or manipulated ONNX files, leading to unexpected behavior.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PK-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of Pickle files, which could lead to arbitrary code execution if files are manipulated.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PT-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the Pickle serialization of PyTorch models that could lead to code execution when loading malicious files.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PT-D-02",
            "kind": "required",
            "type": "object",
            "description": "A serialization vulnerability in PyTorch models, which may enable code execution or file manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PY-S-01",
            "kind": "required",
            "type": "object",
            "description": "Python scripts contain compromised components, libraries, and user secrets.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ST-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in SafeTensors files caused by improper file formatting, potentially leading to security breaches.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ST-D-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in SafeTensors file shards that allows malicious actors to exploit path traversal issues.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-01",
            "kind": "required",
            "type": "object",
            "description": "A backdoor in TensorFlow Protocol Buffers files, potentially allowing malicious actors to execute arbitrary commands.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-02",
            "kind": "required",
            "type": "object",
            "description": "A backdoor vulnerability in TensorFlow or Keras H5 files, introduced via malicious layers in the model.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-03",
            "kind": "required",
            "type": "object",
            "description": "Non standards Tensorflow/Keras layer was found - Potential backdoor.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of Protocol Buffers files, which could lead to code execution or data manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-D-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of TensorFlow or Keras H5 files, which may lead to malicious code execution or corruption.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-R-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the Tensorflow/Keras file format - where an invalid magic number is detected in the file.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          }
        ],
        "schema": [
          {
            "name": "AIS-BM-S-01",
            "kind": "required",
            "type": "object",
            "description": "The AI-BOM indicates presence of packages with CVEs or other reported vulnerabilities.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-CP-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of checkpoint files, which could lead to unintended code execution or model manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-GU-R-01",
            "kind": "required",
            "type": "object",
            "description": "A runtime threat in GGUF files caused by malicious or improperly formatted data.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-GU-R-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the GGUF format with invalid or unreadable template. This is an indication of a potential file tampering.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-B-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the keras model files indicating presence of potential backdoor / unsafe operations.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-B-02",
            "kind": "required",
            "type": "object",
            "description": "Non-standard Keras Layers are found in the Model - Potential backdoor.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-KR-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in deserializing Keras model files, which might expose systems to malicious code.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-MI-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in zip files that can introduce trojans or corrupted data into the system.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ON-B-01",
            "kind": "required",
            "type": "object",
            "description": "A backdoor vulnerability within ONNX model files, potentially allowing hidden operations to be triggered.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ON-R-01",
            "kind": "required",
            "type": "object",
            "description": "A runtime vulnerability caused by corrupted or manipulated ONNX files, leading to unexpected behavior.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PK-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of Pickle files, which could lead to arbitrary code execution if files are manipulated.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PT-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the Pickle serialization of PyTorch models that could lead to code execution when loading malicious files.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PT-D-02",
            "kind": "required",
            "type": "object",
            "description": "A serialization vulnerability in PyTorch models, which may enable code execution or file manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-PY-S-01",
            "kind": "required",
            "type": "object",
            "description": "Python scripts contain compromised components, libraries, and user secrets.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ST-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in SafeTensors files caused by improper file formatting, potentially leading to security breaches.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-ST-D-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in SafeTensors file shards that allows malicious actors to exploit path traversal issues.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-01",
            "kind": "required",
            "type": "object",
            "description": "A backdoor in TensorFlow Protocol Buffers files, potentially allowing malicious actors to execute arbitrary commands.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-02",
            "kind": "required",
            "type": "object",
            "description": "A backdoor vulnerability in TensorFlow or Keras H5 files, introduced via malicious layers in the model.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-B-03",
            "kind": "required",
            "type": "object",
            "description": "Non standards Tensorflow/Keras layer was found - Potential backdoor.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-D-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of Protocol Buffers files, which could lead to code execution or data manipulation.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-D-02",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the deserialization of TensorFlow or Keras H5 files, which may lead to malicious code execution or corruption.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          },
          {
            "name": "AIS-TF-R-01",
            "kind": "required",
            "type": "object",
            "description": "A vulnerability in the Tensorflow/Keras file format - where an invalid magic number is detected in the file.",
            "children": [
              {
                "name": "suppressed",
                "kind": "required",
                "type": "boolean",
                "description": "Set to true to disable this vulnerability check, or false to enable it."
              },
              {
                "name": "custom_severity",
                "kind": "optional",
                "type": "string",
                "description": "Allows you to define a custom severity level for the vulnerability id. If not provided, the system will automatically apply the default severity based on internal rules."
              },
              {
                "name": "customized_by_user",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether the severity has been customized by the user. If true, the severity value was manually defined by the user. If false, the system-assigned default severity is used. This is system generated. "
              },
              {
                "name": "customized_severity_allowed",
                "kind": "optional",
                "type": "boolean",
                "description": "Indicates whether custom severity mapping is allowed. If set to true, users can define their own severity levels using the custom_severity field. If false, only the system-defined default severity will be used. This is system generated. "
              }
            ]
          }
        ]
      },
      {
        "name": "tool_strictness",
        "kind": "optional",
        "type": "object",
        "description": "The tool_strictness parameter defines the security level applied to different file types during analysis. It specifies how strictly the tool should assess and flag potential security risks based on the file format.",
        "": "The tool_strictness parameter defines the security level applied to different file types during analysis. It specifies how strictly the tool should assess and flag potential security risks based on the file format.",
        "children": [
          {
            "name": ".pkl",
            "kind": "optional",
            "type": "object",
            "description": "Specifies the security strictness level for Pickle (.pkl) files",
            "children": [
              {
                "name": "level",
                "kind": "optional",
                "type": "string",
                "description": "specifies the strictness level for .pkl files. options are 'low', 'medium' and 'high'"
              }
            ]
          }
        ],
        "schema": [
          {
            "name": ".pkl",
            "kind": "optional",
            "type": "object",
            "description": "Specifies the security strictness level for Pickle (.pkl) files",
            "children": [
              {
                "name": "level",
                "kind": "optional",
                "type": "string",
                "description": "specifies the strictness level for .pkl files. options are 'low', 'medium' and 'high'"
              }
            ]
          }
        ]
      }
    ],
    "formDataParameters": []
  },
  "currentNewParameter": {
    "label": "Body Parameter",
    "value": "bodyDataParameters"
  },
  "hasTryItOut": true
}
```
:::

