Tatum CNAPP

Download 0
Last updated Jun 28, 2025

tatum-cnapp-cloud-scan-report

Get cloud scan reports from the Tatum CNAPP service.

tatum-cnapp-cloud-scan-report profile=PROFILE scan-id=SCAN-ID
profile=PROFILE
Connect profile code of Tatum CNAPP.
scan-id=SCAN-ID
The scan-id field from the output of the tatum-cnapp-scan-logs command. e.g. 685d8aa6a8893e1dea2bac55

Output Fields

FieldTypeNameDescription
profileStringConnect profileConnect profile code of Tatum CNAPP.
compliance_nameStringCompliance namee.g. AWS CIS Benchmark
category0StringCategory 0e.g. 1. Identity and Access Management
category1StringCategory 1e.g. 1.10. Check MFA for all access
category2StringCategory 2e.g. 1.10.1. Check MFA for all access
cloud_resource_typeStringCloud resource typee.g. aws_iam_user
policy_idStringTatum policy IDe.g. AWS-IAM-005
policy_nameStringTatum policy namee.g. Check MFA for all access
severityStringSeveritye.g. HIGH, MEDIUM, LOW
pass_countIntegerPass countThe number of assets that passed the policy check.
fail_countIntegerFail countThe number of assets that failed the policy check.
unknown_countIntegerUnknown countThe number of assets that were not checked.
policy_summaryStringPolicy summaryBrief description of the policy.
policy_detailStringPolicy detailDetailed description of the policy.
policy_criteriaStringPolicy criteriaCriteria for determining good/vulnerable status.
policy_auditStringPolicy auditAudit methods and procedures.
policy_remediationStringPolicy remediationRemediation methods and guidelines.
policy_referenceStringPolicy referenceReference to the policy.
policy_display_idStringPolicy display IDe.g. AWS-IAM-005
policy_setting_pathStringPolicy setting path info.Configuration-related paths.
policy_ruleStringPolicy rule info.Policy evaluation rules.
policy_stateStringPolicy state info.e.g. UPDATED
policy_countIntegerPolicy countNumber of policies.
policy_created_byStringPolicy created byFirst editor. e.g. SYSTEM
policy_updated_byStringPolicy updated byLast editor. e.g. SYSTEM
policy_change_versionIntegerPolicy change versione.g. 26
cloud_idStringCloud IDe.g. 67778745c1c389327fc4d6cc
cloud_providerStringCloud service providere.g. AWS, AZURE, GCP
asset_countStringAsset countNumber of target assets.
compliance_idStringTatum compliance IDe.g. CIS-AWS_4.0.0
is_not_reportedBoolIs not reportedtrue or false
createdDateCreated timeCreation date and time.
updatedDateUpdated timeLast updated date and time.