Security
Security signals from sandboxes, filtered before storage
ZeroLog now records security signals from its sandbox protections. Detection and alerts are on; automatic countermeasures stay off until they have been validated.
What changed
ZeroLog now records security signals from the protections around its code sandboxes. Where local security sensors are installed, it can also take in their scan findings.
Event data is filtered before it is stored. The filter removes sensitive information first, so less of it ends up in security records.
Detection and alerts are active.
What stays off for now
Automatic rate limiting, network isolation, stopping a sandbox and blocking uploads are built but disabled by default. We will switch them on only after they have been validated, and we will say so here when we do.
What this means for you
Nothing changes in how you use ZeroLog. No request is slowed down or blocked by these checks yet.