Hi,
Please take a look at https://support.symantec.com/en_US/article.TECH232772.html
It explains a few of the verdicts but not all:
content_.... if you open one of your content rules within the url you will find the policy-number wich is applied or untested.
has_urls ... as i see, currently not used
dz_document ... as i see, currently not used
unscannable_pmc ... unscannable but has potentially malicious content
user_allow | user_deny ... Your good | bad senders list
connection_class_x ... your local connection classification
senderauth_batv_sign | fail ... bounce address tag validation signed or query failed
knownlang | blockedlang ... if you check on used language and allow | block a certain one
This list is not a complete one. Even i requested a full documentation noone at symantec could provide me a complete list.
It took me several weeks to complete "my list" used for alerting and reporting.
If you need a certain one more, just let me know.
Regards
Thomas