Skip to content

Document optional Armorer Guard scanner - #15

Open
armorer-labs wants to merge 1 commit into
dwarvesf:mainfrom
armorer-labs:add-armorer-guard-native-scanner
Open

Document optional Armorer Guard scanner#15
armorer-labs wants to merge 1 commit into
dwarvesf:mainfrom
armorer-labs:add-armorer-guard-native-scanner

Conversation

@armorer-labs

Copy link
Copy Markdown

Summary

  • documents an optional Armorer Guard PostToolUse wrapper for teams that want a local native scanner with structured reasons
  • keeps the existing scanner and sandboxing guidance intact
  • frames Armorer Guard as another catch-net, not a replacement for the repo's sandbox/deny-rule model

Why

The README already calls out the limits of pattern-based hooks. Armorer Guard can complement that path as a local Rust scanner for prompt injection, credential leakage, exfiltration, and dangerous tool-call risk.

Disclosure: I work on Armorer Labs / Armorer Guard. Happy to rework this into a separate docs page or remove it if you prefer not to mention optional external scanners.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant