Skip to main content
The resources table
Language

Resources Inventory

Review every distinct resource loaded across your domains under Protection > Resources inventory, and approve the hostnames you recognize.

Resources inventory lists every distinct resource load cside has observed across your domains - scripts, network requests, iframes, and other browser-level resource types - grouped by domain and hostname. It lives under Protection > Resources inventory in the sidebar, alongside Scripts and Alerts.

Rolling out gradually

Resources inventory is rolling out gradually. If you don’t see it in your sidebar yet, contact support@cside.dev to enable it for your team.

The resources table

ColumnWhat it shows
DomainThe domain the resource was loaded on
HostnameThe hostname the resource was loaded from
PolicyThe kind of resource: Connect / XHR, Frame, Object, Worker, Media, Style, Prefetch, Manifest, Image, or Font
VendorThe vendor cside has matched the hostname to, when known
ReviewPending (not yet reviewed) or Approved
Last seenWhen cside last saw this resource load

Reviewing and approving hostnames

Every hostname starts as Pending. Click the checkmark on a row to mark a hostname Approved, or click it again to revert an approved hostname back to Pending.

Approving a hostname is a team-wide review marker, not an enforcement action: it does not block, allow, or otherwise change what the resource can do. It’s a way to track which hostnames your team has already reviewed and signed off on, separate from the Allow/Block permissions you set per vendor. Because approvals are team-wide, approving or reverting a hostname on one domain affects its review status everywhere else it appears.

Time range

Choose 24 hours, 7 days, 30 days, or 3 months from the tabs at the top of the page.

Filtering

  • Scope to a domain with the domain dropdown, or leave it on all domains
  • Search by hostname
  • Filter by Policy, Vendor, or Review status from the filter drawer. The Vendor filter includes an Uncategorized option for resources cside hasn’t matched to a known vendor
  • Vendor Permissions: control what a vendor’s scripts can actually do, beyond tracking review status here
  • Threat Detection: how cside identifies malicious scripts automatically
Was this page helpful?