Anomaly Feedback
the anomaly feedback feature allows administrators and security auditors to interact with the ml engine by providing feedback on detected anomalies by identifying false positives, users can help refine the ml model’s accuracy and reduce future noise in anomaly reporting when an anomaly is detected and listed in the threat analytics table, it is initially assigned a risk score and severity however, if a specific activity is deemed legitimate for the user or environment, it can be marked as a "false positive " this action updates the anomaly’s status in the gui and sends a feedback signal to the ml engine to improve future detection logic to access and manage anomaly feedback 1 navigate to threat analytics on the left hand side menu 2 the threat analytics dashboard will open, displaying the anomaly table at the bottom of the page