Mark a finding as a false positive

We’re gradually transitioning Guard Detect into Atlassian Administration. We’ll support Guard Detect until the Atlassian Administration experience includes all the same features (and new ones!).

The Findings page in Atlassian Administration is the first step in the transition.

Go to Guard Detect documentation

Marking a finding as a false positive clears clutter from your list of findings so security teams can focus exclusively on genuine sensitive data risks. Marking false positives acts as an essential safeguard against data loss, ensuring non-sensitive content isn't accidentally redacted or deleted during bulk remediation workflows.

If you've configured a classification rule that maps a specific detection category to a classification level, marking a finding as a false positive will bypass the classification rule so the finding's classification level remains as it was.

Who can do this?
Role: Organization admin
Atlassian Cloud: Atlassian Guard Premium
Atlassian Government Cloud: Available

Mark a finding as a false positive

You can mark a finding as a false positive from a number of places, including the Finding details page, More actions (•••) menu, and the floating toolbar for bulk actions.

To mark a finding as a false positive:

  1. 移動 アトラシアンの管理。組織が複数ある場合は、対象の組織を選択します。

  2. Select Security, then Data protection, then Findings.

  3. Select a finding that you believe is a false positive to open its details.
    If you don’t need to review the details, you can directly select Mark false positive from the floating toolbar.

  4. Check the details, and when you’re ready, select Mark false positive.

  5. In the dialog that appears, you can choose to mark all matching snippets as false positives.

  6. Select Mark false positive to confirm.

Mark a group of findings as a false positive

You may wish to mark a group of findings as a false positive.

For example, say your users share some test credit card numbers regularly in your Atlassian apps. You can use the Findings page to find the corresponding snippet IDs, then use the bulk selection option to mark them all as false positives.

To mark a group of findings as a false positive:

  1. 移動 アトラシアンの管理。組織が複数ある場合は、対象の組織を選択します。

  2. Select Security, then Data protection, then Findings.

  3. 以下のことが可能です。

    1. use the checkbox next to each finding to select the findings that you’ve verified as false positives

    2. select the checkbox from the header to select all findings displayed on the page

  4. From the floating toolbar, select Mark false positives.

  5. In the dialog that appears, you can choose to mark all matching snippets as false positives.

  6. Select Mark false positives to confirm.

Review false positives

You may wish to review false positives, and potentially revert a false positive. You can do these actions from the False positives tab of the Findings page.

  1. 移動 アトラシアンの管理。組織が複数ある場合は、対象の組織を選択します。

  2. Select Security, then Data protection, then Findings.

  3. Select the False positives tab.

  4. Use the filtering and sorting options to locate any false positives you wish to review.

  5. Select each false positive to display the details of the finding.

  6. If you wish to revert it, select Revert false positive mark.

Any false positives that you’ve reverted will appear in the list of findings. When you revert a false positive, all findings associated with that false positive will appear on the Findings tab.

さらにヘルプが必要ですか?

アトラシアン コミュニティをご利用ください。