v0.3.2policy-scout2026-06-11

Agent integration — MCP server, injection detection, sandbox, intel, watch

MCP server (5 tools, PreToolUse hook), prompt injection scanner (8 categories + base64 rescan), Linux namespace sandbox (overlayfs + strace), package intel adapter (typosquatting, known-bad registry), and real-time fs watch daemon with event routing.

v0.3.22026-06-11
  • ·MCP server over stdio: check, sandbox, sweep, get_report, scan_content
  • ·Injection scanner: 8 categories, zero-width detection, base64 decode-and-rescan
  • ·Namespace sandbox: overlayfs diff + strace syscall analyzer + behavior report
  • ·Intel adapter: local + remote package intelligence, typosquatting, known-bad registry
  • ·Watch daemon: real-time fs watcher with event routing
  • ·Canary file system with PSCANARY token and audit-log hit detection