Catalog UI Policy Rules

1 min read

The below table shows the list of ServiceNow Catalog UI policy rules that are checked by Quality Clouds.

DescriptionSeverityArea of impact
Possible use of private data – Catalog UI Policy scriptFalseWarningSecurity
Possible use of private data – Catalog UI Policy scriptTrueWarningSecurity
JavaScript – Avoid use of Function Constructors – Catalog UI Policy scriptFalseHighSecurity
JavaScript – Avoid use of Function Constructors – Catalog UI Policy scriptTrueHighSecurity
JavaScript – Avoid making connections on unsafe protocols – Catalog UI Policy scriptFalseWarningSecurity
JavaScript – Avoid making connections on unsafe protocols – Catalog UI Policy scriptTrueWarningSecurity
JavaScript – Optimize Loops – Catalog UI Policy scriptFalseWarningPerformance
JavaScript – Optimize Loops – Catalog UI Policy scriptTrueWarningPerformance
JavaScript – Avoid unrestricted targetOrigin on cross-domain messaging – Catalog UI Policy scriptFalseHighSecurity
JavaScript – Avoid unrestricted targetOrigin on cross-domain messaging – Catalog UI Policy scriptTrueHighSecurity
JavaScript – Avoid use of debugger statements – Catalog UI Policy scriptFalseHighSecurity
JavaScript – Avoid use of debugger statements – Catalog UI Policy scriptTrueHighSecurity
JavaScript – Avoid use of WebDB – Catalog UI Policy scriptFalseHighSecurity
JavaScript – Avoid use of WebDB – Catalog UI Policy scriptTrueHighSecurity
JavaScript – Use === comparison – Catalog UI Policy scriptFalseWarningManageability
JavaScript – Use === comparison – Catalog UI Policy scriptTrueWarningManageability
Synchronous AJAX call in Catalog UI Policies – scriptFalseHighPerformance
Synchronous AJAX call in Catalog UI Policies – scriptTrueHighPerformance
Catalog UI Policies using GlideRecord – scriptFalseHighPerformance
Catalog UI Policies using GlideRecord – scriptTrueHighPerformance
Catalog UI Policies with hard-coded sys_ids – scriptFalseMediumManageability
Catalog Policies with hard-coded sys_ids – scriptTrueMediumManageability
Document Object Model (DOM) manipulation in Catalog UI Policies – scriptFalseHighManageability
Document Object Model (DOM) manipulation in Catalog UI Policies – scriptTrueManageability
Modified Out of the Box ElementWarningScalability
Dot walking to sys_id – Catalog UI Policy scriptTrueMediumPerformance
Dot walking to sys_id – Catalog UI Policy scriptFalseMediumPerformance
Usage of g_form.setValue on a reference field without displayValue – Catalog UI Policy scriptTrueHighPerformance
Usage of g_form.setValue on a reference field without displayValue – Catalog UI Policy scriptFalseHighPerformance
Updated on March 21, 2025
Was it helpful ?