Monitoring & Compliance

See what your supply chain is doing, respond to blocked installs, and stream evidence to your audit, SIEM, and alerting stack.

How to Use the Dashboard to Track Supply Chain Health KPIs Read the overview metrics, use time range and repository/client filters, and interpret violation trends by severity. Beginner 15 minutes All Personas How to Monitor and Analyze Traffic Patterns Use the Traffic page to track package requests, filter by repository/client/outcome, identify anomalies, and understand your organization's dependency patterns. Beginner 15 minutes DevOps / Security Engineers How to Monitor Supply Chain Violations and Respond to Blocked Packages Use the violations dashboard, filter by severity, review violation history, and create exceptions for approved packages. Intermediate 20 minutes Security Engineers / Compliance Teams How to Review and Manage Quarantined Packages Understand the quarantine workflow, review flagged packages, approve or reject quarantined items, and transition from quarantine to blocking policies. Intermediate 15 minutes Security Engineers How to Use Audit Logs to Track Package Consumption and Policy Changes Navigate the audit page, filter events by actor/action/date, and build an audit trail for compliance reviews. Beginner 15 minutes Compliance Teams / Security Engineers How to Send Violations to Splunk HEC, Microsoft Sentinel, or IBM QRadar Wire Chainsaw's audit and violation streams into your existing SIEM. Walk through the three exporter types — Splunk HEC JSON, Sentinel CEF over syslog, QRadar CEF over syslog — and the durable replay semantics that mean a SIEM outage doesn't lose events. Intermediate 30 minutes SOC Engineers / Security Engineers How to Send HMAC-Signed Outbound Webhooks to Slack, Teams, PagerDuty, and Jira Configure outbound webhook destinations, verify the HMAC signatures on receivers, and route events with per-team destination maps — including SSRF protection, per-org rate limits, retry/backoff, and DLQ handling. Intermediate 25 minutes Security Engineers / SRE How to Enforce Chainsaw Org-Wide Layer CI checks, MDM policy, and network egress controls so every package install across the org routes through Chainsaw — without Chainsaw trying to be an endpoint agent. Advanced 45 minutes Security Engineers / Platform Engineers

This section is the day-2 view: the dashboards that show supply-chain health, the workflows for responding to a block or a quarantine, the audit logs that stand up as compliance evidence, and the exporters that feed your SIEM, webhook, and on-call systems — plus rolling enforcement out org-wide.

Close the loop on every block. A refused install is only useful if someone sees it and acts. The violations workflow plus webhooks and SIEM export below turn blocks into tickets, alerts, and audit evidence.

Where to next

Exports carry the outcomes of Policy & Enforcement; deeper per-package investigation lives in the BOM inspector.