Skip to content

docs: open the README with what the tool is and enforces - #50

Merged
karanb192 merged 1 commit into
mainfrom
readme-arsenal-intro
Aug 23, 2026
Merged

docs: open the README with what the tool is and enforces#50
karanb192 merged 1 commit into
mainfrom
readme-arsenal-intro

Conversation

@karanb192

Copy link
Copy Markdown
Owner

A Black Hat Arsenal reviewer suggested the README should lead with the tool description so visitors orient quickly. This adds one paragraph after the badges: what agents do autonomously, how hooks intercept every tool call (allow/deny/modify with the reason fed back), why out-of-model enforcement resists prompt injection, what the safety set blocks, and the OWASP LLM Top 10 2026 mapping link.

No content below the intro changed. Claims cross-checked against the plugin catalog (block-dangerous-commands covers curl|sh, rm -rf, force push to main; config-guard covers hook-config tampering; protect-secrets covers .env exfiltration).

An Arsenal reviewer pointed out the README jumps to the catalog without
first saying what the tool does. Lead with the least-privilege
description: runtime interception via PreToolUse/PostToolUse, out-of-model
enforcement, what the safety set blocks, and the OWASP mapping link.
@karanb192
karanb192 merged commit 70c8224 into main Aug 23, 2026
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant