Folelse uses four severity levels for breach records. The level guides your response, your notification obligation, and the urgency of remediation.
Initial severity is often set before you have full information. As your investigation progresses, edit the breach record to update the severity. Folelse logs all changes to the severity field in the audit trail, creating a clear investigation timeline.
When in doubt, overestimate severity. It is easier to downgrade after investigation than to face criticism from the ICO for underreporting a serious breach.
Need more help with this?
Contact support