Skip to content

feat: add runtime SARIF and hardening - #8

Merged
hlinor-systems merged 1 commit into
mainfrom
feat/runtime-sarif-hardening
Sep 12, 2026
Merged

hlinor-systems merged 1 commit into
mainfrom
feat/runtime-sarif-hardening

Conversation

@hlinor-systems

Copy link
Copy Markdown
Member

Summary

This PR adds SARIF 2.1.0 export for runtime findings, runtime-compatible baseline and expiring suppressions, and input hardening for normalized JSONL metadata. Sensitive keys such as prompts, arguments, request/response bodies, headers, authorization, tokens, and secrets are rejected; metadata fields have bounded lengths.

Validation

go test ./..., go build ./cmd/agentctl, and git diff --check pass.

@hlinor-systems
hlinor-systems merged commit 65c8463 into main Sep 12, 2026
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant