Security Policies
Zero-Trust Engine
Deterministic rules and invariants enforced automatically with zero AI hallucination
Active Policies
6
Block Rules
2
HITL Guardrails
2
Trigger Matches (24h)
140
| Policy Rule | Enforcement Action | Priority | Target Triggers | Matches (24h) | State |
|---|---|---|---|---|---|
No PII Export pol_no_pii_export | BLOCK | P1 | export_piiupload_s3send_email | 3 | Active |
HITL on Customer Data Access pol_hitl_customer_access | HITL | P2 | read_db:customers | 1 | Active |
Block Untrusted MCP Servers pol_no_untrusted_mcp | BLOCK | P3 | mcp_tool_call | 1 | Active |
Delegation Depth Limit pol_delegation_depth | HITL | P4 | delegation_chain | 0 | Active |
Monitor All External API Calls pol_monitor_external_calls | MONITOR | P5 | http_call | 7 | Active |
Allow Internal DB Reads (Permitted Agents) pol_allow_internal_read | ALLOW | P10 | read_db | 128 | Active |