---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# File and resources

# File and resources {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

The file and resources category ensures applications handle untrusted file data
securely and store untrusted data from untrusted sources with limited permissions in an
appropriate location.
This includes controls such as avoiding denial of service through large or unexpected file
types, validating file type and preventing against path traversal.
* **[Disallow infected file download \[Updated in Security Center 1.5 and 2.0\]](~hlV0c747Ux4x7yTFawKWw)**   
  Control whether users can download non-scanned attachments if the antivirus service is down or unreachable.
* **[Enable email spam scoring and filtering \[Updated in Security Center 1.3\]](6iyDJBaiNtknZsx~T3bWsA)**   
  Install the Email Filter (com.glide.email_filter) plugin to install email filtering within the instance. This filtering identifies existing headers, which enables you to decide what to do with the email based on the associated header. Alternatively, set com.glide.email_filter to false.
* **[Enable antivirus scan](https://servicenow-prod.fluidtopics.net/8EIWXshGTQwCmMe3HSzQIA)**   
  The com.glide.snap.enable_scan property activates the antivirus scan functionality.
* **[Restrict downloadable files types in static content \[Updated in Security Center 1.3\]](uFL0zwk3Aa57q6W9wjFHmQ)**   
  Use the glide.ui.strict_customer_uploaded_static_content property to enable restrictions on the file types that can be downloaded when they have been uploaded using the Upload File functionality.
* **[Limit attachment size in training and prediction flows for GraphQL endpoints \[New in Security Center 1.3 and updated in 1.5\]](ioKWsXwVslhB8c1p3viMyQ)**   
  The glide.platform_ml_di.max_attachment_size_graphql property controls the maximum allowed size limit for returning attachments in GraphQL endpoints of training or prediction flows.
* **[Limit attachment size in training and prediction flows \[New in Security Center 1.3 and updated in 1.5\]](n5NQF_QZNtDDX2I45hS0nA)**   
  The glide.platform_ml_di.max_attachment_size property controls the maximum allowed size limit for returning attachments in training and prediction flows.
* **[Limit HTTP response body size \[New in Security Center 1.3 and updated in 1.5\]](of1da8owr5UqLb2iyMpEGA)**   
  Configure the glide.http.response.get_body.limit.enabled and glide.http.response.get_body.limit properties to protect your instance against OutOfMemoryExceptions.
* **[Limit maximum number of attachments in email](https://servicenow-prod.fluidtopics.net/tyVPXQ7rrp7ssPZezV~Psw)**   
  Configure the number of inbound email attachments allowed per Email \[sys_email\] record on your instance.
* **[Maximum allowed attachment size \[Updated in Security Center 1.3\]](VWA00PEDPUKQrGw4uAjGRQ)**   
  Configure the com.glide.attachment.max_size property to control the maximum size (in megabytes) permitted for an uploaded attachment.
* **[Set Allowed MIME Child Types \[New in Security Center 2.0\]](TSVwLo~Fg8xLIk4n9inn8A)**   
  Learn how to configure the glide.security.mime.type.allowed_child_types property to a secure setting so that file types will not pass the Multipurpose Internet Mail Extensions (MIME) type checking. This reduces the risk of remote code execution on an uploaded file.
* **[Validate file mime type in AttachmentCreator soap web service \[New in Security Center 1.3 and updated in 1.5\]](c8rB~JFw1zg~5XG_UkiVHw)**   
  The glide.attachment.enforce_security_validation property determines whether Multipurpose internet Mail Extensions (MIME) files undergo validation.
* **[Validate MIME Type of Attachments from Inbound Emails](https://servicenow-prod.fluidtopics.net/FgOJb7fQ3mjvi4GgdP80Yw)**   
  Use a system property to validate attachments uploaded from inbound emails.

