---
title: CSPM Limits
description: Current limitations and constraints for CSPM.
product: Cspm
url: https://docs.digitalocean.com/products/cspm/details/limits/
last_updated: "2026-08-13"
---

> **For AI agents:** The documentation index is at [https://docs.digitalocean.com/llms.txt](https://docs.digitalocean.com/llms.txt). Markdown versions of pages use the same URL with `index.html.md` in place of the HTML page (for example, append `index.html.md` to the directory path instead of opening the HTML document).

# CSPM Limits

Cloud Security Posture Management (CSPM) evaluates your DigitalOcean resources for misconfigurations and security risks, surfaces findings by severity, and provides guidance to help you resolve them.

CSPM has the following limitations:

- Only supported workloads (Droplets and managed databases) can be evaluated.
- Only workloads with coverage enabled are included in scans.
- Workload evaluation is available only in paid plans.
- Managed Rules and findings suppression are available only in paid plans.
- All scans must be started manually. CSPM does not run automatic or scheduled scans.
- Findings reflect the state of resources at the time of the most recent scan.