Skip to main content

Sensitive Risk Deprecation

J
Written by Jaquez Hodo
Updated this week

What’s Changing?

We are removing the Sensitive Risks feature from Vanta’s Risk Management product. After September 29, risks will no longer be marked as “sensitive,” and Editors will have access to all risks.

Why This Is Changing

We are simplifying access to risks. The best way to restrict access to risks is through the Collaborator role.

What You Need To Do

No immediate action is required. However, if you previously used Sensitive Risks to restrict visibility:

  1. Use Collaborator roles

    • Collaborators only see risks they are assigned to.

    • To restrict access to certain users, assign them as Collaborators and only assign them the risks they should see.

  2. Review your user access settings

    • Check that editors and admins have the correct visibility based on your team’s needs.

FAQ

Q: What happens to my existing sensitive risks?

A: They will no longer be treated as restricted. Anyone with appropriate risk access (e.g., Editors) will be able to view them.

Q: Can I still hide risks from some users?

A: Yes. Use Collaborator roles to ensure users only see the risks they’re assigned to.

Q: Will this affect audit visibility?

A: No — your risk structure and audit exports remain fully functional.

If you have additional questions, reach out to your CSM or Vanta Support.