pub struct SecurityPosture {
pub jail: JailState,
pub shell: ShellSecurity,
pub secrets_enabled: bool,
pub secrets_redact: bool,
}Expand description
A snapshot of every security-relevant switch, resolved exactly the way the runtime enforces it (env → config → secure default).
Fields§
§jail: JailStateFilesystem path-jail state.
shell: ShellSecurityShell-command gating mode.
secrets_enabled: boolWhether secret/.env detection runs on tool output.
secrets_redact: boolWhether detected secrets are actually masked (vs only flagged).
Implementations§
Source§impl SecurityPosture
impl SecurityPosture
Sourcepub fn detect() -> Self
pub fn detect() -> Self
Resolve the live posture from config + env. Pure read, no side effects.
Sourcepub fn level(&self) -> PostureLevel
pub fn level(&self) -> PostureLevel
Derived coarse label. Open only when both containment planes are off,
so it precisely reflects what lean-ctx yolo produces.
Sourcepub fn secrets_protected(&self) -> bool
pub fn secrets_protected(&self) -> bool
True when secrets still cannot leak to the provider (detection + masking
both on). This stays independent of Self::level on purpose.
Trait Implementations§
Source§impl Clone for SecurityPosture
impl Clone for SecurityPosture
Source§fn clone(&self) -> SecurityPosture
fn clone(&self) -> SecurityPosture
Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source. Read moreAuto Trait Implementations§
impl Freeze for SecurityPosture
impl RefUnwindSafe for SecurityPosture
impl Send for SecurityPosture
impl Sync for SecurityPosture
impl Unpin for SecurityPosture
impl UnsafeUnpin for SecurityPosture
impl UnwindSafe for SecurityPosture
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> CloneToUninit for Twhere
T: Clone,
impl<T> CloneToUninit for Twhere
T: Clone,
impl<A, B, T> HttpServerConnExec<A, B> for Twhere
B: Body,
Source§impl<T> Instrument for T
impl<T> Instrument for T
Source§fn instrument(self, span: Span) -> Instrumented<Self>
fn instrument(self, span: Span) -> Instrumented<Self>
Source§fn in_current_span(self) -> Instrumented<Self>
fn in_current_span(self) -> Instrumented<Self>
Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read more