Skip to main content

Crate execsurface_model

Crate execsurface_model 

Source
Expand description

Versioned raw observation types for ExecSurface.

Raw observations are backend evidence. PIDs/TIDs and syscall-oriented details may appear here, while canonical identity is defined later.

Modules§

canonical
Backend-independent canonical execution-surface model.

Structs§

BackendMetadata
CommandOutcome
Observation
ObserverWarning
RawEvent

Enums§

FileOperation
NetworkEndpoint
RawEventKind
SpawnMechanism

Constants§

RAW_OBSERVATION_SCHEMA_VERSION