> For the complete documentation index, see [llms.txt](https://docs.prismacloud.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.prismacloud.io/content-collections/data-security-posture-management/how-to-articles/assets-and-files/ignore-non-sensitive-asset-findings.md).

# Ignore Non Sensitive Asset Findings

A sensitive asset is defined as any asset with Findings that contain confidential information, such as financial data (PII) that could be vulnerable to unauthorized access.

*Example of sensitive asset*\
![](/files/bvagjzSArmbzrXo2swui)

Historically, discerning between authentic Findings indicating a sensitive asset and false positives posed a challenge. Consider an instance where an asset, housing a file with 5,000 email addresses, is rightly identified as sensitive.

However, distinguishing this from a scenario where an asset contains a JavaScript file containing a solitary email address of the person who wrote the file and put it online — a case that unequivocally falls under the non-sensitive category — proved to be a complex task until now.

*Example of non sensitive Email Data Type.*\
![](/files/6sebNHqr0NGoSxMcoUOY)

### Introducing Ignore Rules

To overcome these issues, Prisma Cloud DSPM has introduced a feature that enables customers to apply filters tailored to specific use cases, allowing them to disregard files that were erroneously identified as sensitive due to certain findings. **Customers now have the capability to create custom “Ignore Rules”, thereby classifying these files as non-sensitive**.

For instance, a customer can formulate an Ignore Rule stipulating that any JavaScript file containing fewer than 5 email addresses should be categorized as non-sensitive, notwithstanding the presence of Findings within them.

![](/files/Yj2IuZV8ETX1vjgkbWpq)

Another scenario where sensitivity may not apply involves Data Types that contain lists of countries. Lists of countries, by themselves, are not considered sensitive. Previously, the presence of such files within a bucket would render the entire bucket sensitive. The implementation of the Ignore Rule effectively addresses and resolves this issue.

### Create an Ignore Rule

* Create an Ignore Rule to define an asset as non-sensitive.
* Apply the rule to an individual asset or across all assets.\
  An Ignore Rule can be created via the Inventory window, the Findings window, or in the Classification Rules tab.

**NOTE**: No files are deleted when an Ignore Rule is applied. The files are just marked as Ignore.

Important

**IMPORTANT**: When creating an Ignore Rule, it is crucial to include in the Rule configurations to include the "**Number of data types = 1**" filter.

![1.png](/files/4QluFgAQNen28pSqvpef)

This is essential because if a file for example only contains a country data type, it is not inherently sensitive, and an Ignore Rule can be applied. However, in cases where a file contains multiple data types, such as a combination of countries and phone numbers, a blanket ignore may not be appropriate. The solution lies in creating a rule specifying "Number of data types = 1," ensuring selective ignoring of files with a single data type, such as countries, without inadvertently excluding those with additional, potentially sensitive data types, for example credit card information.

If an additional data type is subsequently incorporated into the file, it ceases to be ignored. For instance, if the file initially only featured an email data type, making it eligible for non-sensitive classification and application of the Ignore Rule, the situation changes if credit card numbers are subsequently included in the file. In such cases, the file should no longer be subject to the Ignore Rule to ensure comprehensive sensitivity evaluation.

### Create an Ignore Rule in the Inventory window

1. Go to **Inventory** and navigate to the asset you want to apply the Ignore Rule to.\
   **TIP**: Apply filters to quickly access the required asset.

   ![](/files/2hj8wdreBYan5BboNRys)
2. Click the asset, and go to the Findings tab.

   ![](/files/wHZd6kTiUgr0Z7SHsHDE)
3. Apply the Ignore Ruler filters, and click Create Ignore Rule.
4. In the New Classification Rule pop-up, do the following:
   1. Choose the option to Ignore Findings
   2. Enter a name for the rule.
   3. Enter a meaningful description.
   4. In the Rule configuration section, If required, click +Add to add more filter criteria, or alternatively delete some of the existing filters.
   5. Apply this rule to the asset you are working on.\
      ![](/files/3dR7lGoMY6odUmJOv583)
   6. Click Create. The Classification rule you created is added to the list of Classification Rules.\
      **NOTE**: When the Classification rule has been applied to all files within a bucket, the files do not appear in the Risks tab as they are no longer categorized as sensitive. Consequently, the Risks tab does not display any files for which the Ignore Rule has been activated.\
      ![](/files/GOpcZSeZsqHl9GU50AkH)

### Create an Ignore Rule in the Findings Window

1. Click Inventory and go to the Files tab.\
   ![](/files/gqvKSyv0NEPxiAQtG8sr)
2. Apply the rule filters, and click New Classification Rule.
3. In the New Classification Rule pop-up, do the following:
   1. Enter a name for the rule.
   2. Enter a meaningful description.
   3. In the Rule configuration section, If required, click +Add to add more filter criteria, or alternatively delete some of the existing filters.\
      ![](/files/xissIDcHIyC14l8erntM)
   4. Click Create. The Ignore Rule you created is added to the list of Classification Rules.\
      **NOTE**: The Findings window displays all the assets at the company level, therefore, utilizing this method does not provide the option to selectively apply the Ignore Rule to individual assets or across the entire asset inventory.

### Create an Ignore Rule in the Classification Rules Tab

1. Go to Preferences > Classification Rules.
2. Click Add New.

   ![](/files/CwLefWPEo3hve7OIntPB)
3. In the New Classification Rule pop-up, do the following:
   1. Enter a name for the rule.
   2. Enter a meaningful description.
   3. In the Rule configuration section, click +Add to add Ignore Rule criteria.
   4. Click Create.

### Identify Ignored Files

In the Findings tab, the "Ignored" column indicates whether a file is marked as True, signifying that it has been ignored, or False, indicating that it has not been subject to the Ignore Rule.

![](/files/W8mME71ut3kYEo35dDTf)

### Search for Ignored Files

1. In the Inventory window, go to the Files tab.
2. Apply the following filters: **Is Ignored = True** to display ignored files or **Is Ignored = False** to display files that aren’t ignored.\
   \&#xNAN;*Apply search filters in the File tab*\
   ![](/files/cqndhTJBDHYAehpa5Kcy)

### View Ignore Rules

When you create an Ignore Rule, it is added to the list in the Classification Rules tab.

1. Go to Preferences > Classification Rules.
2. Use the search filters to look for Ignore Rules according to their created date, the person who created the rule, or by the name of the rule.\
   ![](/files/sIcVOEZp7sqacljfMiv3)
3. Expand the Ignore Rules to view their description.

### Edit Ignore Rules

1. Go to Preferences > Classification Rules.
2. Navigate to the Ignore Rule you want to edit, and click Edit.
3. In the Edit File Ignore Rule window, edit the Ignore Rule as required.
4. Optional: Click View in Findings to view the Ignore Rule in the Findings window.
5. Click Save Changes.\
   ![](/files/HBOIRdUu3Nt1eugvU0GI)

### Delete Ignore Rules

1. Go to Preferences > Classification Rules.
2. Navigate to the Ignore Rule you want to delete, and click the Delete icon.
3. In the confirmation pop-up, click Delete.

   ![](/files/vRw0C6o8H5AclaTT7mMq)

### Predefined Ignore Rules

For your convenience, Prisma Cloud DSPM has created the following four predefined Ignore Rules based on frequent occurrences:

Ignore Rule Name

Description

Exclude single non-identifiable data types

Ignore non sensitive data types

Exclude Email addresses found in CSS files

Ignore a handful of emails in CSS files

Exclude Email and IP addresses found in JS files

Exclude email addresses in JS files

Exclude Email addresses found in HTML files

Exclude email addresses in HTML files

* To view the predefined Ignore Rules in the side menu, click Settings and go to the Classification Rules tab.
* It is possible to add, edit, and delete Ignore Rules in the Classification Rules tab.
* The predefined Ignore Rules can be identified by looking at the Created By column and noting which Ignore Rules were created by Prisma Cloud DSPM.\
  ![](/files/L8BokHROf53JYG9ExZ12)


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.prismacloud.io/content-collections/data-security-posture-management/how-to-articles/assets-and-files/ignore-non-sensitive-asset-findings.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
