list_detection_rules
View the full catalog of detection rules with rule ID, severity, pattern, and example. Audit coverage, document for compliance, or build a custom allowlist.
Instructions
Return the catalog of every detection rule the scanner applies — rule_id, severity, pattern_kind, description, example_match. Use this to audit coverage, document detection scope to your compliance/security team, or build a custom allowlist. 30 rules across 8 families: DESTRUCTIVE / PACKAGE / PRIVILEGED / SHUTDOWN / EXFIL / DATABASE / GIT / SUSPICIOUS.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||