Quarantine & rug-pull protection
With tool quarantine enabled, new or changed tools after the trusted baseline are held for review.
Features / Tool security
Combine quarantine, tool-change review, offline scanning, sensitive-data detection, and schema checks.
Why it matters
A tool definition can change after approval. A response can contain unexpected data. Put explicit checks along the path from discovery to execution.
With tool quarantine enabled, new or changed tools after the trusted baseline are held for review.
Manual inspection is not required for every tool. Use the TPA scanner or ask your AI agent to review quarantined tool definitions and findings. Review assistance does not bypass approval controls.
The built-in deterministic engine checks tool definitions locally, without Docker, an LLM, or a network request. Optional deep scanners add separate checks.
Flag potential secrets in tool arguments and responses for review in the activity log.
Check structured responses against a tool’s declared output schema. Choose warning or strict rejection behavior.
An example workflow
Definition-change detection does not detect every implementation change. Scanners can miss threats or flag benign content. Output validation defaults to warnings and requires a declared schema.
Explore the rest of your setup