Good fit if
- Engineers hardening agents that read untrusted content
- Security reviewers writing agent trust policy
- Operators adding written injection defenses and tests
Layered, defense-only protection against prompt injection - untrusted-content quarantine policies, instruction/data separation rules, detection heuristics, and a defensive regression test suite.
Non-destructive by rule — new-folder install, never overwrite, human-approval gates for risky steps, rollback included.
CTL-5 content trust ladder, instruction hierarchy model, untrusted-content-policy JSON, tool-call injection rules, retrieval-poisoning defense, defensive detection heuristics, defensive regression suite, DCS-100 scorecard, two worked defenses (neutralized), 16-doc integration pack, 5 upgrade modules, 10-doc differentiation folder
Untrusted content (web, email, documents, tool results, retrieval) hijacking agent behavior: no quarantine policy, no instruction/data separation, no regression suite proving defenses still hold.
Defensive-only by charter: describes attack shapes to defend against them, ships no working payloads, will not generate attacks. Handles no credentials or wallets, executes nothing, never weakens an existing control. Honest scope: risk reduction, not invulnerability.
Defense-only kit against prompt injection on CTL-5 (trust by source; instruction authority from CTL-4 only): quarantine policies, safe-summarization, tool-call injection rules, defensive detection heuristics, retrieval-poisoning defense, defensive regression suite. Ships no payloads; risk reduction, not invulnerability. Brackets with P03/P09, hands off to P23, regression-tests via P14. Non-destructive install, delete-folder rollback. Wave 2, built Production: live and purchasable through verified Polar checkout; prices owner-confirmed 2026-07-03 (still production); verified Polar checkout is active on this page.
Problem addressed: Untrusted content (web, email, documents, tool results, retrieval) hijacking agent behavior: no quarantine policy, no instruction/data separation, no regression suite proving defenses still hold.
Trust-Taxonomies/, Quarantine-Policies/, Detection-Heuristics/ (5), Regression-Suites/, Worked-Defenses/ folders plus the standard architecture.
| Tier | Price | Canonical depth | License |
|---|---|---|---|
| Standard | $99 USD | Full product: all templates, harnesses, SOPs, integration pack, and samples. | Single-Operator |
| Premium | $169 USD | Standard plus all 5 upgrade modules (Basic, Pro, Agent, Automation, Safety) and priority support. | Single-Operator |
Defense-in-depth guidance and tests, NOT a guarantee: no defense stops all injections Your stack must apply the policies; heuristics are written patterns, not a scanner service
Core templates & quick-start path. Best for testing the system manually first.
Buy Lite — one-timeFull product: all templates, harnesses, SOPs, integration pack, and samples.
Buy Standard — one-timeStandard plus all 5 upgrade modules (Basic, Pro, Agent, Automation, Safety) and priority support.
Buy Premium — one-timeEach tier uses its verified Polar checkout. See full pricing and bundles.
These bundle memberships come directly from the canonical bundle catalog. Compare the exact contents before purchase.