Skip to main content

Guard Policy vs IAM Policy

ConceptPurposeScopeManaged in
Guard PolicyContent filtering rules (PII, topics, jailbreak, tone, etc.)Project / APICitadel, Project level
IAM PolicyRBAC for system accessAccount → Role → SystemCitadel, Role assignment

InputType

TODO — explain TEXT / IMAGE / FILE; how it’s determined (Desktop App via UIPP parsing policy, Guard API via automatic judgment).

UIPP

TODO — “User Input Parsing Policy”: Desktop App rule that extracts the user’s input from captured network traffic and automatically classifies InputType. Configured per target URL with whitelist mode support.

Guardian Bastion

TODO — the gateway in the User Section that validates requests, looks up policies, forwards to Guardian, and writes Opticon logs.

Guard Policy

PII, Topic filter, and policy versioning in detail.