Compare commits
1 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| 241df1f835 |
@@ -1,4 +1,4 @@
|
|||||||
# PRD 0052: Egress DLP addon
|
# PRD 0053: Egress DLP addon
|
||||||
|
|
||||||
- **Status:** Active
|
- **Status:** Active
|
||||||
- **Author:** claude
|
- **Author:** claude
|
||||||
@@ -397,7 +397,7 @@ afterward, preserving the existing credential-injection security model.
|
|||||||
4. **Naive prompt injection detector (Phase 2).**
|
4. **Naive prompt injection detector (Phase 2).**
|
||||||
Add `NaiveInjectionDetector` to `dlp_detectors.py`. Wire
|
Add `NaiveInjectionDetector` to `dlp_detectors.py`. Wire
|
||||||
`scan_inbound` into the new `response` hook in `egress_addon.py`.
|
`scan_inbound` into the new `response` hook in `egress_addon.py`.
|
||||||
Extend unit tests. Activate PRD 0052 (`Status: Draft → Active`) in
|
Extend unit tests. Activate PRD 0053 (`Status: Draft → Active`) in
|
||||||
this commit.
|
this commit.
|
||||||
|
|
||||||
## Open questions
|
## Open questions
|
||||||
@@ -3,7 +3,7 @@
|
|||||||
## Question
|
## Question
|
||||||
|
|
||||||
Bot-bottle's egress manifest currently supports exact-host matching and
|
Bot-bottle's egress manifest currently supports exact-host matching and
|
||||||
a flat list of path prefixes (`path_allowlist`). As the DLP work (PRD 0052)
|
a flat list of path prefixes (`path_allowlist`). As the DLP work (PRD 0053)
|
||||||
and future route hardening evolve, we may want more expressive matching:
|
and future route hardening evolve, we may want more expressive matching:
|
||||||
glob-style path patterns (`/api/*/data`), header predicates (Content-Type,
|
glob-style path patterns (`/api/*/data`), header predicates (Content-Type,
|
||||||
Accept), and per-method rules (GET allowed, POST blocked). What established
|
Accept), and per-method rules (GET allowed, POST blocked). What established
|
||||||
|
|||||||
Reference in New Issue
Block a user