Apply a remediation (governed)
apply_remediationApply a remediation for real (mode=live). Routed through the full governance funnel — patent reachability/kill-chain gates, autonomy policy and the approval flow. If your policy requires approval it returns 'requires_approval' rather than acting.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| rule_id | Yes | Policy/rule id (e.g. AWS_S3_PUBLIC_ACCESS) | |
| threat_id | Yes | Threat id/code to remediate | |
| resource_context | No | provider/resource_id/region/account_id/metadata |