Skip to main content

SNOW-16.1: Agent Action Without Role Gate

๐Ÿ”ด High ยท ServiceNow Role-Based Access

Detects agent tool scripts that perform privileged operations without gs.hasRole() or GlideUser.isMemberOf() checks, relying solely on ACLs.

Detailsโ€‹

FieldValue
Rule IDSNOW-16.1
SeverityHigh
CategoryServiceNow Role-Based Access
Platformsservicenow

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to SNOW-16.1.

See Alsoโ€‹