Tracking rule: every saved item should have a state, owner, next action, due date or review date, evidence note, and proof boundary. If it does not, it is still investigating.
Action Tracker
Keep vulnerability follow-up from disappearing after triage.
Use this page with Saved. It explains how to track local triage states, owners, deadlines, review dates, and the next action without needing accounts or a backend.
Action Tracking Path
Track only the next accountable movement
Owner
Who can move this forward?
Name the person or team that can validate, patch, mitigate, accept risk, or close with proof.
Next Action
What happens before the next review?
Use one concrete action: validate version, confirm exposure, schedule patch, apply control, open vendor case, or document exception.
Proof Boundary
What evidence will close or downgrade it?
Define the evidence needed before changing state. Scanner output alone is usually not enough for closure.
State Model
What each saved triage state should mean
Follow-Up Cadence
When to revisit items after the first pass
Tracking Templates
Copy-ready note formats for Saved items
Recommended use: save the item, choose a state, add the owner and review date, then use Handoff Center and Brief Builder for communication.