You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Create and review the RFC for sandbox egress middleware: the request-processing hook that lets OpenShell inspect, transform, block, and annotate outbound sandbox request content before it leaves the sandbox boundary.
This is the real GitHub-mirrored child issue for the Privacy Guard roadmap item. Privacy Guard is the initial use case; the feature being specified is the middleware layer that enables that use case.
Scope
Define the v1 egress hook stage: after network/L7 policy, before credential injection and upstream forwarding.
Define how trusted middleware/guard services are registered, configured, discovered by supervisors, and validated.
Define the hot-path interface: request and response shape, capability reporting, metadata contract, transformation semantics, and failure handling.
Define how sandbox policy selects middleware and attaches middleware behavior to endpoint rules.
Define secure defaults, including fail-closed behavior when required inspection cannot run.
Define audit evidence and logging expectations without storing raw sensitive values by default.
Explain how middleware findings can feed future model routing without making model routing part of this RFC.
Summary
Create and review the RFC for sandbox egress middleware: the request-processing hook that lets OpenShell inspect, transform, block, and annotate outbound sandbox request content before it leaves the sandbox boundary.
This is the real GitHub-mirrored child issue for the Privacy Guard roadmap item. Privacy Guard is the initial use case; the feature being specified is the middleware layer that enables that use case.
Scope
Out of Scope
Deliverable
rfc/0005-sandbox-egress-middleware/Context
rfc/0005-privacy-guard/research-notes/