diff --git a/addons/index.html b/addons/index.html index e486ca0963..329bde2bfa 100644 --- a/addons/index.html +++ b/addons/index.html @@ -825,7 +825,7 @@
The Common Library add-on provides Alert Tags for use by scan rules.
+Of note the following tags/groups of tags are included:
+Please note that the PCI DSS and HIPAA standards deal with specific types of data, while an identified vulnerability may expose such data ZAP has insufficient context with which to differentiate what is or might be exposed by leveraging a given vulnerability. If the system being tested does not hold any such data then the related compliance tag may not be relevant.
+See also:
+ + +Any alert that involves a specific CVE will (generally) also have a tag for that specific CVE identifier with a value that links to Mitre’s National Vulnerability Database (NVD).
+ +The add-on also provides a set of Alert Tags which associate various rule types or focus areas to scan policies, see the Scan +Policies add-on help for further details.
+ +