Skip to main content

Overview

Policies control what happens when RAXE detects a threat. You can configure actions per rule, family, or severity level.

Policy Actions

Configuration

Create ~/.raxe/policies.yaml:

Targeting Rules

By Severity

By Family

By Rule ID

By Confidence Threshold

Priority Resolution

When multiple policies match, the highest priority wins (0-1000 scale):
In this example, pii-042 is allowed while all other PII rules block.

Example Configurations

Learning Mode

Strict Production

SDK Integration

Limits

For fine-grained control over individual false positives, see Suppressions.

What’s Next

Suppressions

Fine-grained control over false positives

Production Checklist

Deploy RAXE safely to production