Harness AI Security

Enterprise only Premium PartnerThird Party

Enable Harness AI Securityv3.4+

Enable the Harness AI Security plugin on a Route or Service that already has the Harness WAAP plugin attached, or enable it globally if Harness WAAP is global. Set the base plugin’s mode to sync if you need request evaluation, redaction, or blocking.

This configuration evaluates both the request and the response against the sensitive-data rules configured in the Traceable Platform, and fails open if the Edge Decision Service is unreachable or times out. Set allow_on_failure to false on either block if you need evaluation failures to block traffic instead.

Note: A successful passthrough without redaction doesn’t necessarily indicate a problem. It can mean that no configured platform rule matched your test traffic.

Prerequisites

  • The Harness AI Security plugin is installed.

  • The Harness WAAP plugin is enabled on the same Route or Service, with mode set to sync (required for request evaluation).

  • A sensitive-data classification or data-protection rule is configured in the Traceable Platform for the content you want to detect, redact, or block.

Set up the plugin

Help us make these docs great!

Kong Developer docs are open source. If you find these useful and want to make them better, contribute today!