How shadow-sm mode works
- 1Connect your agent or workflow
- 2Route proposed actions to Sector8
- 3Keep enforcement off
- 4Collect two weeks of decision evidence
- 5Review the policy gap report
- 6Turn on enforcement for selected rules
What you get
- List of actions Sector8 would have denied
- Reason codes for each denial
- Evidence hashes and trace IDs
- Policy version references
- Agent and tool breakdown
- Suggested enforcement priorities
Every denial names a reason code. See the reason-code reference.
Best fit
Claude Code rolloutsMCP tool governanceCustomer-facing agentsInternal copilots with system accessRegulated or sensitive-data workflows