The AMSI module stores scanned data in an encrypted SQLite database on the endpoint, which it scans at regular intervals. By default, the database size is 100 MB. A smaller database saves space, but it will have less historical data for AMSI audits. For more information, see Managing disk space use.
To change the database size to suit your environment:
Log in to the Endpoint Security Web UI.
From the Admin menu, select Policies.
On the Policies page, select the policy you want.
On the Edit Policy page, click the AMSI tab.
In the AMSI details panel, in the Agent Database section, in the Maximum Database Size field, enter the size you want.
On servers or systems that have a high workload, Trellix recommends that you enable the Discard Clean Scans option. This reduces disk input/output (IO) operations and database space usage. However, AMSI audits will include only detected and blocked artifacts.